Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'CreditCop' = '%PROGRAM_FILES%\CreditCop\CreditCopUp.exe /disk'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'CreditCop' = '%PROGRAM_FILES%\CreditCop\CreditCopUp.exe /WS'
- %PROGRAM_FILES%\CreditCop\CreditCopUp.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\install[1].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\info[1].htm
- 'www.cr###tcop.co.kr':80
- www.cr###tcop.co.kr/count/install.php?pa###########################################
- www.cr###tcop.co.kr/app/info.htm
- DNS ASK www.cr###tcop.co.kr
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'Indicator' WindowName: ''