Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'MEDIA' = 'C:\Arquivos de programas\player.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'DATA2' = '%ProgramFiles%\Mozilla Firefox\firefox.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'DATA' = 'C:\Arquivos de programas\Mozilla Firefox\firefox.exe'
- Средство контроля пользовательских учетных записей (UAC)
- '<SYSTEM32>\reg.exe' ADD HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System /v EnableLUA /t REG_DWORD /d 0 /f
- '%WINDIR%\regedit.exe' /s %WINDIR%\Media.reg
- '<SYSTEM32>\cmd.exe' /k <SYSTEM32>\reg.exe ADD HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System /v EnableLUA /t REG_DWORD /d 0 /f
- '<SYSTEM32>\cmd.exe' /k regedit /s %windir%\Media.reg
- %WINDIR%\aviso.bak
- %ProgramFiles%\Mozilla Firefox\firefox.exe
- %WINDIR%\Media.reg
- 'www.lo####variedade.com':80
- http://www.lo####variedade.com/contador.php
- DNS ASK www.lo####variedade.com
- ClassName: '' WindowName: 'Gerenciador de Tarefas do Windows'
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'RegEdit_RegEdit' WindowName: ''