Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Updater' = '"<Текущая директория>\Updater.exe"'
- %WINDIR%\regedit.exe /s %WINDIR%\setuplog\regedit.reg
- <SYSTEM32>\cmd.exe /c %WINDIR%\setuplog\shellz.cmd
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\error~[1].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\216.146.39[1]
- %WINDIR%\setuplog\shellz.cmd
- %WINDIR%\setuplog\shellz.cmd
- '69.##5.23.82':80
- '21#.#46.39.70':80
- 'localhost':1035
- 69.##5.23.82/esicotra/logs/error~.php?z=################################################################
- 21#.#46.39.70/
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'RegEdit_RegEdit' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''