Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices] 'ICQ' = 'syscdd2.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'ICQ' = 'syscdd2.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'ICQMsn' = 'C:\WINNT\SYSTEM32\cbfks.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'ICQ' = 'syscdd2.exe'
- '<SYSTEM32>\syscdd2.exe'
- 'C:\WINNT\SYSTEM32\cbfks.exe'
- 'C:\WINNT\SYSTEM32\devot.exe'
- <SYSTEM32>\syscdd2.exe
- C:\WINNT\SYSTEM32\devot.exe
- C:\WINNT\SYSTEM32\cbfks.exe
- '66.##8.142.125':65475
- '38.#7.87.7':10100
- '23#.#08.143.5':10100
- '69.##.235.18':10100
- '2.#.104.1':10100
- '45.#90.80.3':10100
- '16#.#51.73.0':10100
- '16#.#48.65.20':10100
- '37.##3.146.2':10100
- ClassName: 'Indicator' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'EDIT' WindowName: '(null)'