Техническая информация
- <SYSTEM32>\regsvr32.exe /s %WINDIR%\ntsd9278.dll
- <SYSTEM32>\regsvr32.exe /s <SYSTEM32>\ntsd4287.ocx
- %WINDIR%\ntsd9278.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\newaires[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\green2[1].jpg
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\file2[1].jpg
- <SYSTEM32>\ntsd4287.ocx
- 'ht####x.cwsurf.de':80
- 'li####ess.hdfree.in':80
- 'localhost':1036
- li####ess.hdfree.in/asm/green2.jpg
- li####ess.hdfree.in/asm/file2.jpg
- ht####x.cwsurf.de/newaires.php
- DNS ASK ht####x.cwsurf.de
- DNS ASK li####ess.hdfree.in