Техническая информация
- [<HKLM>\SOFTWARE\Classes\msm4file\shell\open\command] '' = ''
- %PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE http://58.###.198.119:8080/count.asp?ma################################ Windows XP&flag=fac166ca13297b62a7103ae0bb62a92f&user=<Имя вируса>
- %HOMEPATH%\Desktop\Internet Explorer.msm4
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Жф¶Ї Internet Explorer дЇААЖч.msm4
- %HOMEPATH%\Start Menu\Internet Explorer.msm4
- %PROGRAM_FILES%\Internet Explorer\MUI\iexplore.exe
- %WINDIR%\Downloaded Program Files\csdnsd.exe
- C:\b.txt
- C:\b.txt
- '58.##8.198.119':8080
- 'localhost':1036
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''