Техническая информация
- <SYSTEM32>\at.exe 22:15 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\hti.exe""
- <SYSTEM32>\at.exe 22:20 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\xtr.exe""
- <SYSTEM32>\at.exe 22:10 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\bch.exe""
- <SYSTEM32>\at.exe 22:00 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\cdi.exe""
- <SYSTEM32>\at.exe 22:05 /every:M,T,W,Th,F,Sa,Su ""%WINDIR%\dss.exe""
- %TEMP%\nsd3.tmp\ns7.tmp
- %TEMP%\nsd3.tmp\ns6.tmp
- %TEMP%\nsd3.tmp\ns5.tmp
- %TEMP%\nsd3.tmp\ns8.tmp
- C:\ndf
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\counter[1].php
- %TEMP%\nsd3.tmp\inetc.dll
- %TEMP%\nsd3.tmp\ns4.tmp
- %WINDIR%\dss.exe
- %WINDIR%\cdi.exe
- %TEMP%\nsd2.tmp
- %WINDIR%\bch.exe
- %TEMP%\nsd3.tmp\nsExec.dll
- %WINDIR%\xtr.exe
- %WINDIR%\hti.exe
- %WINDIR%\hti.exe
- %WINDIR%\xtr.exe
- C:\ndf
- %WINDIR%\cdi.exe
- %WINDIR%\dss.exe
- %WINDIR%\bch.exe
- %TEMP%\nsd3.tmp\ns8.tmp
- %TEMP%\nsd3.tmp\inetc.dll
- %TEMP%\nsd3.tmp\nsExec.dll
- %TEMP%\nsd3.tmp\ns7.tmp
- %TEMP%\nsd3.tmp\ns4.tmp
- %TEMP%\nsd3.tmp\ns5.tmp
- %TEMP%\nsd3.tmp\ns6.tmp
- '12#.#17.235.76':80
- 12#.#17.235.76/games/counter.php
- ClassName: 'Shell_TrayWnd' WindowName: ''