Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '{29123221-3AF8-488c-85DE-6B3EC59E8074}' = '%WINDIR%\netmedia.exe -s'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '{29123221-3AF8-488c-85DE-6B3EC59E8074}' = '%WINDIR%\netmedia.exe -s'
- %WINDIR%\netmedia.exe
- %WINDIR%\netmedia.ini
- %WINDIR%\netmedia.exe
- %WINDIR%\netmedia.ini
- %WINDIR%\netmedia.exe
- 'po#.#4dl.com':80
- po#.#4dl.com/index.php?ei##########################################
- po#.#4dl.com/index.php?ei###############################
- po#.#4dl.com/index.php?ei###########################################
- DNS ASK po#.#4dl.com
- ClassName: 'Indicator' WindowName: ''