Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'internet' = 'explorer C:\'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'gpbsv' = '%WINDIR%\üpÿsv.áxe'
- '<SYSTEM32>\regsvr32.exe' /s %WINDIR%\gbalass.dId
- %WINDIR%\?ycaase.zip
- %TEMP%\iu.yxe
- %WINDIR%\gpbsv.exe
- %PROGRAM_FILES%\Internet Explorer\?owans?c.zie
- '20#.#6.232.182':80
- 'wp#d':80
- 20#.#6.232.182/download/7/B/D/7BD95543-D8A7-474F-8A79-34DE266AAC27/IE9-Windows7-x86-ptb.exe
- wp#d/wpad.dat
- DNS ASK do#####d.microsoft.com
- DNS ASK wp#d