Техническая информация
- %WINDIR%\1.exe
- <SYSTEM32>\ping.exe 127.1 -n 3
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\gx[1].txt
- C:\fw.bat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\ahqbt[1]
- %TEMP%\SkinH_EL.dll
- %WINDIR%\1.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\sj[1].asp
- %WINDIR%\1.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\sj[1].asp
- '21#.#3.161.144':9999
- 'www.ah##t.com':80
- 'localhost':1041
- 'sf.##xixz.com':80
- 'localhost':1037
- 'localhost':1038
- www.ah##t.com/
- www.ah##t.com/gx.txt
- sf.##xixz.com/1/sj.asp
- DNS ASK www.ah##t.com
- DNS ASK sf.##xixz.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''