Техническая информация
- '%APPDATA%\Microsoft\devencl.exe' (загружен из сети Интернет)
- '%APPDATA%\Microsoft\devencl.exe'
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' -nohome
- %APPDATA%\Microsoft\devencl.exe
- %HOMEPATH%\Local Settings\<INETFILES>\Content.IE5\KHMHGZ4F\Y5s9v71[1].jpg
- 'wp#d':80
- 'aa.##eracc.net':80
- 'localhost':1037
- 'i.##gur.com':80
- http://aa.##eracc.net/file/zzz.new
- http://11#.#11.111.2/wpad.dat via wp#d
- http://i.##gur.com/Y5s9v71.jpg
- DNS ASK aa.##eracc.net
- DNS ASK wp#d
- DNS ASK i.##gur.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''