Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{C631C7E3-5DF9-4036-85B7-18F253CFABF2}] 'StubPath' = ''
- <SYSTEM32>\rundll32.exe "%CommonProgramFiles%\Microsoft Shared\Triedit\{C631C7E3-5DF9-4036-85B7-18F253CFABF2}.dll",AppStartup FirstStart
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3] '1400' = '00000000'
- %CommonProgramFiles%\Microsoft Shared\Triedit\{C631C7E3-5DF9-4036-85B7-18F253CFABF2}.pif
- %CommonProgramFiles%\Microsoft Shared\Triedit\{C631C7E3-5DF9-4036-85B7-18F253CFABF2}.dll
- %TEMP%\318713.dll
- %TEMP%\318713.dll
- %CommonProgramFiles%\Microsoft Shared\Triedit\{C631C7E3-5DF9-4036-85B7-18F253CFABF2}.dll
- 'www.va###remoli.com':80
- www.va###remoli.com/2011/logo.gif
- DNS ASK www.va###remoli.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''