Техническая информация
- %PROGRAM_FILES%\viewweb.exe http://www.wo##310.com/wenhua/binzhou/bincheng.html
- <SYSTEM32>\sc.exe config winmgmt start= demand
- <SYSTEM32>\net1.exe start winmgmt
- <SYSTEM32>\regsvr32.exe /s "%PROGRAM_FILES%\osm\osm.OCX"
- <SYSTEM32>\regini.exe %WINDIR%\sys.ini
- iexplore.exe
- %WINDIR%\system\osm.ini
- %PROGRAM_FILES%\ie.bmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\bincheng[1].html
- %PROGRAM_FILES%\viewweb.exe
- %PROGRAM_FILES%\osm\osm.OCX
- %WINDIR%\sys.ini
- 'www.wo##310.com':80
- 'localhost':1036
- 'localhost':1035
- www.wo##310.com/wenhua/binzhou/bincheng.html
- DNS ASK www.wo##310.com
- ClassName: '' WindowName: 'http://www.baidu.com/baidu?tn=qo99&word='
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: 'Internet Explorer ????'
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''