Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\Windows Browser Analyzer] 'Start' = '00000002'
- '%WINDIR%\BrowserAnalyzer.exe'
- '<SYSTEM32>\rundll32.exe' <SYSTEM32>\shimgvw.dll,ImageView_Fullscreen C:\Picture.jpg
- '<SYSTEM32>\wscript.exe' "C:\1761.vbs"
- %HOMEPATH%\Recent\Local Disk (C).lnk
- %HOMEPATH%\Recent\Picture.lnk
- %WINDIR%\system\NetSyst33.dll
- C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\CJCTQ25G\Netsysh[1].jpg
- C:\1761.vbs
- %WINDIR%\BrowserAnalyzer.exe
- C:\Picture.jpg
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\sb[1].jpg
- C:\1761.vbs
- 'dh####4.free3v.com':80
- 'ft#######.host166.web522.com':80
- dh####4.free3v.com/Vipfile8.12/Controlfiles/Netsysh.jpg
- ft#######.host166.web522.com/sb.jpg
- DNS ASK dh####4.free3v.com
- DNS ASK ft#######.host166.web522.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'ShImgVw:CPreviewWnd' WindowName: '(null)'