Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\WMLKiiKFjzYErsA.lnk
- %ProgramFiles%\yL1I07oWXUcAlOw.exe
- 'mi###idemo.com':80
- 'sr###vent.com':80
- 'localhost':1036
- http://mi###idemo.com/search.php?g=############################
- http://sr###vent.com/img.php?g=############################
- DNS ASK mi###idemo.com
- DNS ASK sr###vent.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''