Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '698d51' = '%WINDIR%\698d51.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'seed' = '%WINDIR%\seed\seed.exe'
- %WINDIR%\698d51.exe
- %WINDIR%\seed\seed.exe
- %WINDIR%\698d51.exe
- %WINDIR%\seed\ir50_32.dll
- %WINDIR%\53e3a7.exe
- %WINDIR%\seed\seed.exe
- %WINDIR%\seed\seed.ini
- 'www.dv##00.com':80
- www.dv##00.com/peek/shareseed/putserver.asp?es##############################################
- www.dv##00.com/peek/control/putserver.asp?es##############################################
- DNS ASK www.dv##00.com
- ClassName: 'TForm1' WindowName: '698d51'
- ClassName: 'TForm1' WindowName: 'seed'
- ClassName: 'MS_WINHELP' WindowName: ''