Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'WarnonBadCertRecving' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'WarnOnZoneCrossing' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3] '1601' = '00000000'
- %HOMEPATH%\Desktop\System Check.lnk
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\System Check.lnk
- %HOMEPATH%\Start Menu\Programs\System Check\Uninstall System Check.lnk
- %ALLUSERSPROFILE%\Application Data\E2tAhM6UqhVVw9
- %HOMEPATH%\Start Menu\Programs\System Check\System Check.lnk
- из <Полный путь к файлу> в %ALLUSERSPROFILE%\Application Data\E2tAhM6UqhVVw9.exe
- 'th####eutlub.com':80
- 'ma###eafano.com':80
- 've###asmot.com':80
- 'ne##mik.com':80
- 'ru###rave.com':80
- 'bu###eal.com':80
- http://ma###eafano.com/britix/a
- http://th####eutlub.com/britix/ar
- http://th####eutlub.com/britix/a
- http://ve###asmot.com/britix/ar
- http://ve###asmot.com/britix/a
- http://ma###eafano.com/britix/ar
- http://ru###rave.com/britix/ar
- http://ne##mik.com/britix/ar
- http://ru###rave.com/up.php?0Q######################################################################
- http://ne##mik.com/britix/a
- http://ru###rave.com/britix/a
- http://bu###eal.com/britix/ar
- http://bu###eal.com/britix/a
- DNS ASK th####eutlub.com
- DNS ASK ma###eafano.com
- DNS ASK ve###asmot.com
- DNS ASK ne##mik.com
- DNS ASK ru###rave.com
- DNS ASK bu###eal.com