Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] 'ss' = '{2313D11B-87AC-44E3-81F7-D4A808555C17}'
- <SYSTEM32>\son.exe
- <SYSTEM32>\ss.exe
- %PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE http://21#.#5.72.140/index.php?Cl########################
- <SYSTEM32>\dssa.dll
- <SYSTEM32>\son.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\index[1].php
- <SYSTEM32>\ss.exe
- <SYSTEM32>\ss.dat
- <SYSTEM32>\dss.dll
- '21#.#5.72.140':80
- 'localhost':1036
- 21#.#5.72.140/index.php?Cl########################
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''