Техническая информация
- '%PROGRAM_FILES%\1\ko22.exe'
- '%TEMP%\irsetup.exe'
- '%WINDIR%\regedit.exe' /s %WINDIR%\temp\tmp.reg
- %PROGRAM_FILES%\1\ko22.exe
- %PROGRAM_FILES%\1\internet.fne
- %PROGRAM_FILES%\1\krnln.fnr
- %WINDIR%\Temp\tmp.reg
- %PROGRAM_FILES%\NetMeeting\win.vbs
- %PROGRAM_FILES%\1\EThread.fne
- %TEMP%\irsetup.dat
- %TEMP%\irsetup.exe
- %TEMP%\suf6lng.4
- %TEMP%\irsetup.ini
- %TEMP%\IRIMG1.BMP
- %PROGRAM_FILES%\NetMeeting\win.vbs
- %TEMP%\irsetup.dat
- %WINDIR%\Temp\tmp.reg
- %PROGRAM_FILES%\1\ko22.exe
- %TEMP%\IRIMG1.BMP
- %TEMP%\suf6lng.4
- %TEMP%\irsetup.ini
- 'www.so##60.com':80
- www.so##60.com/new/ko2233/001/tongji.asp?pu##################################
- DNS ASK www.so##60.com
- ClassName: 'RegEdit_RegEdit' WindowName: '(null)'
- ClassName: 'MS_WINHELP' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'