Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\6to4] 'Start' = '00000002'
- <SYSTEM32>\cmd.exe /c ""%WINDIR%\temp\temp0.bat" "
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EZGVAV2P\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\2GQSOHYZ\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\RDZ3SH61\desktop.ini
- %WINDIR%\Installer\AMDEx.msi
- %WINDIR%\Temp\temp0.bat
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\CZITGHMX\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\2GQSOHYZ\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\RDZ3SH61\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\CZITGHMX\desktop.ini
- C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EZGVAV2P\desktop.ini
- 'up####.#lndowsupdate.com':82
- DNS ASK up####.#lndowsupdate.com