Техническая информация
- "%TEMP%\1086.exe" (загружен из сети Интернет)
- %TEMP%\nse2.tmp\System.dll
- %TEMP%\1086.exe
- %TEMP%\temp.ini
- %TEMP%\~nsu.tmp\Au_.exe
- %TEMP%\uninst.exe
- %TEMP%\nse2.tmp\InetLoad.dll
- %TEMP%\nse2.tmp\nsRandom.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\down[1].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\down[1].php
- %WINDIR%\system\ole.dll
- %TEMP%\uninst.exe
- %TEMP%\temp.ini
- %TEMP%\nse2.tmp\System.dll
- %TEMP%\nse2.tmp\InetLoad.dll
- %TEMP%\nse2.tmp\nsRandom.dll
- 's2##.#esthh.info':80
- s2##.#esthh.info/down.php?i=###########################
- s2##.#esthh.info/down.php?i=####################
- DNS ASK s2##.#esthh.info
- ClassName: 'Shell_TrayWnd' WindowName: ''