Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\aec] 'ImagePath' = '<DRIVERS>\BGS.sys'
- <SYSTEM32>\zczxcx.exe
- %PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE http://www.wx##8.cc/tongji/go.asp?ma##########################
- <DRIVERS>\BGS.sys
- C:\sss1.sys
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\go[1].asp
- <SYSTEM32>\zczxcx.exe
- %ALLUSERSPROFILE%\Desktop\Лж·зРЎЛµ.url
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk
- %HOMEPATH%\Desktop\Internet Explorer.lnk
- %ALLUSERSPROFILE%\Desktop\Гв·СµзУ°.url
- %ALLUSERSPROFILE%\Desktop\ГАЕ®НјЖ¬.url
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\go[1].asp
- 'www.wx##8.cc':80
- 'localhost':1034
- www.wx##8.cc/tongji/go.asp?ma##########################
- DNS ASK www.wx##8.cc
- '<IP-адрес в локальной сети>':1035
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'SysListView32' WindowName: ''
- ClassName: '' WindowName: ''