Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'order_Shell' = '%HOMEPATH%\order_smla.exe'
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' -Embedding
- %WINDIR%\Explorer.EXE
- <SYSTEM32>\cscript.exe
- %HOMEPATH%\order_opt1.bin
- %HOMEPATH%\order_smla.exe
- '65.##.154.100':80
- http://65.##.154.100/cgi-bin/options.cgi?us##################################################################
- http://65.##.154.100/cgi-bin/certs.cgi
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Indicator' WindowName: ''