Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'ads1' = '%PROGRAM_FILES%\Internet Explorer\nvsvc.exe genxing'
- [<HKLM>\SYSTEM\ControlSet001\Services\HostService] 'Start' = '00000002'
- '%PROGRAM_FILES%\Internet Explorer\nvsvc.exe'
- '%PROGRAM_FILES%\Internet Explorer\nvsvc.exe' genxing
- '%PROGRAM_FILES%\Internet Explorer\nvsvcs.exe'
- %PROGRAM_FILES%\Internet Explorer\KRNLN.FNR
- %PROGRAM_FILES%\Internet Explorer\NTSVC.OCX
- %PROGRAM_FILES%\Internet Explorer\nvsvc.exe
- %PROGRAM_FILES%\Internet Explorer\nvsvcs.exe
- %PROGRAM_FILES%\Internet Explorer\com.run
- %PROGRAM_FILES%\Internet Explorer\EAPI.FNE
- %PROGRAM_FILES%\Internet Explorer\ETHREAD.FNE
- 'ta####1.3322.org':8081
- DNS ASK ta####1.3322.org
- ClassName: '(null)' WindowName: '????????1.0'