Техническая информация
- <SYSTEM32>\ieupdates.exe
- <SYSTEM32>\ieupdates.exe (загружен из сети Интернет)
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\firstrun[1].php
- %HOMEPATH%\Start Menu\Antivirus 2009\Uninstall Antivirus 2009.lnk
- <SYSTEM32>\ieupdates.exe.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\zs880000[1].exe
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Antivirus 2009.lnk
- <SYSTEM32>\scui.cpl
- %HOMEPATH%\Start Menu\Antivirus 2009\Antivirus 2009.lnk
- %HOMEPATH%\Desktop\Antivirus 2009.lnk
- 'se######update-download.com':80
- 'pc#####nce-update.com':80
- se######update-download.com/zsa09/zs880000.exe
- pc#####nce-update.com/firstrun.php?pr############################################################
- DNS ASK se######update-download.com
- DNS ASK pc#####nce-update.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'TfrmXPAMain' WindowName: ''