Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'UJServer.exe' = '%WINDIR%\UJServ.exe'
- '%WINDIR%\UJServ.exe'
- '%WINDIR%\UJServ.exe' (загружен из сети Интернет)
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\UJServ[1].exe
- %WINDIR%\UJServ.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\update[1].txt
- %TEMP%\update.txt
- 'ma##.rambler.ru':25
- 'lo###.aux.su':80
- lo###.aux.su/UJServ.exe
- lo###.aux.su/update.txt
- DNS ASK ma##.rambler.ru
- DNS ASK lo###.aux.su
- ClassName: 'Indicator' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'