Техническая информация
- '%WINDIR%\msfu30.exe'
- '%TEMP%\msfu.exe'
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\k12[1].txt
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\k12[1].txt
- %WINDIR%\msfu30.exe
- %TEMP%\msfu.exe
- %WINDIR%\WnUninst.ini
- %WINDIR%\msfu30.exe в %TEMP%\150359\...\TemporaryFile
- %WINDIR%\msfu30.exe
- 'ha#.##999888777.win':80
- 'ha#.#n666.cc':80
- http://ha#.##999888777.win/k12.txt
- http://ha#.#n666.cc/k12.txt
- DNS ASK ha#.##999888777.win
- DNS ASK ha#.#n666.cc
- ClassName: 'WTWindow' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''