Техническая информация
- '%TEMP%\nvtrnvtrays.exe.exe' (загружен из сети Интернет)
- '%TEMP%\nvtrnvtrays.exe.exe'
- '%TEMP%\is-NLVNQ.tmp\pokpokemgfx.exe.tmp' /SL5="$40036,1401063,54272,%TEMP%\pokpokemgfx.exe.exe"
- '%TEMP%\pokpokemgfx.exe.exe'
- %TEMP%\is-D0ST8.tmp\_isetup\_shfoldr.dll
- %TEMP%\nvtrnvtrays.exe.exe
- %TEMP%\pokpokemgfx.exe.exe
- %TEMP%\is-NLVNQ.tmp\pokpokemgfx.exe.tmp
- %TEMP%\nvtrnvtrays.exe.exe
- %TEMP%\pokpokemgfx.exe.exe
- '52.##1.235.229':80
- 'wp#d':80
- http://52.##1.235.229/pokemgfx.exe
- http://11#.#11.111.1/wpad.dat via wp#d
- DNS ASK wp#d
- ClassName: 'Shell_TrayWnd' WindowName: ''