Техническая информация
- '<SYSTEM32>\hintsock.exe'
- '<SYSTEM32>\hintsok.exe'
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\zjeyoo[1].zip
- %PROGRAM_FILES%\LDp5b31\log.dat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\zjeyoo[1].zip
- %PROGRAM_FILES%\LDp5b31\Run.zip
- <SYSTEM32>\hintsock.exe
- <SYSTEM32>\hintsok.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\zjeyoo[1].ini
- %TEMP%\bt08130.bat
- %PROGRAM_FILES%\LDp5b31\Run.zip
- %PROGRAM_FILES%\LDp5b31\log.dat
- %TEMP%\bt08130.bat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\zjeyoo[1].zip
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\zjeyoo[1].zip
- %TEMP%\bt08130.bat
- %PROGRAM_FILES%\LDp5b31\Run.zip
- 'in#.#88b.com':80
- in#.#88b.com/soft/58wangwei/zjeyoo.zip
- in#.#88b.com/58wangwei/zjeyoo.ini
- DNS ASK in#.#88b.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''