Техническая информация
- <SYSTEM32>\cmd.exe /c <SYSTEM32>\ASEFVFGT.bat
- %PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE http://www.ba##uuo.cn/123/xx.htm
- %TEMP%\~46.tmp
- <SYSTEM32>\ASEFVFGT.bat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\xx[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\down[1].txt
- <SYSTEM32>\Configs.sys
- %TEMP%\~46.tmp
- %TEMP%\~46.tmp
- 'localhost':1038
- 'www.ba##uuo.cn':80
- 'localhost':1036
- www.ba##uuo.cn/123/xx.htm
- www.ba##uuo.cn/down.txt
- DNS ASK www.ba##uuo.cn
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''