Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'win32dlll' = '"<SYSTEM32>\win32dlll.exe"'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'TaskList' = '"<SYSTEM32>\win32dlll.exe"'
- <SYSTEM32>\win32dlll.exe
- %WINDIR%\winhlp32.dat
- <SYSTEM32>\win32dlll.exe
- 'sm##.##rreo.yahoo.es':587
- DNS ASK sm##.##rreo.yahoo.es
- ClassName: '' WindowName: 'internet Explorer - Aviso de Seguranca'
- ClassName: '' WindowName: ''