Техническая информация
- '%WINDIR%\patch\update.exe' -u/160setup.exe
- '%TEMP%\nsr2.tmp\pcdown.exe'
- '%TEMP%\nsr2.tmp\160setup.exe'
- '%WINDIR%\patch\update.exe' (загружен из сети Интернет)
- '<SYSTEM32>\regsvr32.exe' /s "<SYSTEM32>\360.dll"
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\oyyy[1].exe
- %TEMP%\974.tmp
- %WINDIR%\patch\update.exe
- <SYSTEM32>\360.dll
- %TEMP%\nsr2.tmp\pcdown.exe
- %TEMP%\nsr2.tmp\160setup.exe
- %TEMP%\E_4\krnln.fnr
- %TEMP%\974.tmp
- 'so##60.com':80
- 'localhost':1036
- so##60.com/adong/oyyy.exe
- DNS ASK so##60.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'