Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'SPopup' = '%PROGRAM_FILES%\SpeedUp\SPopup.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'SpeedUp' = '%PROGRAM_FILES%\SpeedUp\SpeedUp.exe Icon'
- %PROGRAM_FILES%\SpeedUp\SPopup.exe (загружен из сети Интернет)
- %PROGRAM_FILES%\SpeedUp\SpeedUp.exe (загружен из сети Интернет) Icon
- %HOMEPATH%\Start Menu\Programs\SpeedUp\SpeedUp.lnk
- %HOMEPATH%\Desktop\SpeedUp.lnk
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\SpeedUp.lnk
- %HOMEPATH%\Start Menu\Programs\SpeedUp\SpeedUp A¦°A.lnk
- %PROGRAM_FILES%\SpeedUp\SpeedUp.dll2
- %PROGRAM_FILES%\SpeedUp\SpeedUp.exe2
- <SYSTEM32>\Sremover.exe
- %PROGRAM_FILES%\SpeedUp\SPopup.exe2
- 'www.sp###up.co.kr':80
- 'do##.#cright.co.kr':80
- do##.#cright.co.kr/Speedup/Sremover.exe
- www.sp###up.co.kr/api_result.php?mo##################################
- do##.#cright.co.kr/Speedup/SPopup.exe
- do##.#cright.co.kr/Speedup/SpeedUp.exe
- do##.#cright.co.kr/Speedup/SpeedUp.dll
- DNS ASK www.sp###up.co.kr
- DNS ASK do##.#cright.co.kr
- ClassName: '' WindowName: 'SPopup '
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: 'SpeedUp '