Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\Microsoft Essential.lnk
- <SYSTEM32>\reg.exe add "HKCU\Software\Microsoft\Kanallar" /f /v KanalList /t reg_dword /d 1
- <SYSTEM32>\reg.exe add "HKCU\AppEvents\Schemes\Apps\Explorer\Navigating\.Current" /f /ve /t reg_expand_sz /d a
- %APPDATA%\Microsoft\Internet Explorer\scvhost.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\google.com[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\dns[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\dns[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\dns[1].htm
- 'www.go###e.com.tr':80
- 'localhost':1039
- 'ak#.##lmasaatio.net':80
- www.go###e.com.tr/
- ak#.##lmasaatio.net/dns.htm
- DNS ASK www.go###e.com.tr
- DNS ASK ak#.##lmasaatio.net
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''