Техническая информация
- '%TEMP%\tepm\dkai.exe'
- '%TEMP%\tepm\dkai.exe' (загружен из сети Интернет)
- %TEMP%\soft.ini
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\soft8[1].ini
- %TEMP%\tepm\dkai.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\Open[1].txt
- %TEMP%\nsq2.tmp\inetc.dll
- %TEMP%\tepm\mfblpf_70562.exe
- %TEMP%\nsq2.tmp\System.dll
- %TEMP%\nsq2.tmp\nsRandom.dll
- %TEMP%\tepm\setup_3197.exe
- %TEMP%\nsq2.tmp\System.dll
- %TEMP%\nsq2.tmp\nsRandom.dll
- %TEMP%\nsq2.tmp\inetc.dll
- 'st##.eliang.com':80
- 'dn####o77.qbox.me':80
- dn####o77.qbox.me/Open.txt
- dn####o77.qbox.me/tc/soft8.ini
- st##.eliang.com/cstat.php
- DNS ASK st##.eliang.com
- DNS ASK dn####o77.qbox.me
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'