Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices] '' = 'Bupdate.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '' = 'Bupdate.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\uScan.exe] 'ImagePath' = '"<SYSTEM32>\Bupdate.exe" -service'
- [<HKLM>\SYSTEM\ControlSet001\Services\uScan.exe] 'Start' = '00000002'
- '<SYSTEM32>\Bupdate.exe' -service
- '<SYSTEM32>\Bupdate.exe'
- <SYSTEM32>\Bupdate.exe
- 'ma##.aol.com':25
- 'ir#.##otchat.org':6667
- DNS ASK ma##.aol.com
- DNS ASK ir#.##otchat.org
- DNS ASK ao#.com
- ClassName: 'Shell_TrayWnd' WindowName: ''