Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] '{AEB6717E-7E19-11d0-97EE-00C04FD91972}' = ''
- '<SYSTEM32>\cmd.exe' /c ""<Текущая директория>\_Ms.bat" "
- ClassName: 'AVP.AlertDialog' WindowName: ''
- <Текущая директория>\_Ms.bat
- %CommonProgramFiles%\360tray.Dat
- %CommonProgramFiles%\360tray.jmp
- 'www.ad###585.com':80
- 'www.ha##23.com':80
- http://www.ad###585.com/admin/Down.txt
- http://www.ad###585.com/admin/1.txt
- http://www.ha##23.com/
- http://www.ad###585.com/admin/Post.asp
- DNS ASK www.ad###585.com
- DNS ASK www.ha##23.com
- ClassName: '#32770' WindowName: 'ИрРЗїЁїЁЙПНш°ІИ«ЦъКЦ - IE·АВ©ЗЅ'
- ClassName: '#32770' WindowName: '???????????????????? - IE??????'
- ClassName: 'ScrollBar' WindowName: 'array'
- ClassName: 'ScrollBar' WindowName: 'string'
- ClassName: 'aliluya' WindowName: 'hahaha'
- ClassName: '#32770' WindowName: 'IEЦґРР±Ј»¤'
- ClassName: '#32770' WindowName: 'ИрРЗЧўІб±нјаїШМбКѕ'
- ClassName: '#32770' WindowName: '??????????????????'
- ClassName: '#32770' WindowName: 'IE ????????'
- ClassName: '#32770' WindowName: 'IE????????'
- ClassName: '#32770' WindowName: 'IE ЦґРР±Ј»¤'