Техническая информация
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\YPORKZYZ\xz[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\down[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\s[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\s[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\gg.7878wg[1]
- <Текущая директория>\hide.dll
- <Текущая директория>\superec.ProcessMemory.sys
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\7878wg[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\s[1]
- '78##wg.com':80
- 'www.ba##u.com':80
- 'localhost':1035
- 'hi.##idu.com':80
- 78##wg.com/xz.htm
- www.ba##u.com/s?wd#########
- 78##wg.com/down.htm
- hi.##idu.com/7878wg/blog/item/4fedb379ae8412e4431694d3.html
- 78##wg.com/
- DNS ASK www.ba##u.com
- DNS ASK gg.##78wg.com
- DNS ASK www.78##wg.com
- DNS ASK hi.##idu.com
- DNS ASK 78##wg.com
- '<IP-адрес в локальной сети>':1037
- '<IP-адрес в локальной сети>':1036
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'SAS window class' WindowName: 'SAS window'
- ClassName: 'Shell_TrayWnd' WindowName: ''