Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'ttool' = '%WINDIR%\convpart.exe'
- '%WINDIR%\convpart.exe' /sd 2896
- %WINDIR%\Explorer.EXE
- iexplore.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\options[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\cmd[1]
- %WINDIR%\convpart.exe
- <SYSTEM32>\cacltvwr.dll
- '19#.#04.27.35':80
- 'localhost':1037
- 19#.#04.27.35/cgi-bin/cmd.cgi?us##################################################################################################
- 19#.#04.27.35/cgi-bin/options.cgi?us##################################################################################################
- ClassName: 'Indicator' WindowName: ''