Техническая информация
- %WINDIR%\autoClose.exe (загружен из сети Интернет)
- %WINDIR%\new_update_au.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\update_au[1].exe
- %WINDIR%\new_draw_text.exe
- %WINDIR%\a_new_ver.dll
- %WINDIR%\new_remove_360.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\remove_360[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\draw_text[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\au[1].dll
- %WINDIR%\new_ver.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\ver[1].dll
- %WINDIR%\new_autoClose.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\autoClose[1].exe
- %WINDIR%\new_au.dll
- 'www.cy##.edu.tw':80
- www.cy##.edu.tw/~s9814606/draw_text.exe
- www.cy##.edu.tw/~s9814606/update_au.exe
- www.cy##.edu.tw/~s9814606/remove_360.exe
- www.cy##.edu.tw/~s9814606/ver.dll
- www.cy##.edu.tw/~s9814606/au.dll
- www.cy##.edu.tw/~s9814606/autoClose.exe
- DNS ASK www.cy##.edu.tw
- DNS ASK www.google.com
- ClassName: 'Shell_TrayWnd' WindowName: ''