Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\WinUpdate] 'ImagePath' = '%ProgramFiles%\Internet Explorer\services.exe -k'
- [<HKLM>\SYSTEM\ControlSet001\Services\WinUpdate] 'Start' = '00000002'
- '%ProgramFiles%\Internet Explorer\services.exe'
- '%TEMP%\Update.exe'
- '%TEMP%\QQUpdate.exe'
- %ProgramFiles%\Internet Explorer\services.exe
- %HOMEPATH%\Local Settings\<INETFILES>\Content.IE5\KHMHGZ4F\detail[1]
- %TEMP%\QQUpdate.exe
- %TEMP%\Update.exe
- %ProgramFiles%\Internet Explorer\services.exe
- '<L###LNET>.0.2':1966
- '12#.#25.114.144':80
- 'localhost':1036
- http://www.ba##u.com/p/hubeidkk/detail via 12#.#25.114.144
- DNS ASK www.ba##u.com
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''