Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks] '{ACADABAF-0000-0010-8000-10AA006D2EA4}' = ''
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'EnableFirewall' = '00000000'
- <SYSTEM32>\temp123.tmp
- %HOMEPATH%\Local Settings\<INETFILES>\Content.IE5\KHMHGZ4F\index3[1].gif
- 'up####.king9g.com':80
- 'localhost':1038
- http://up####.king9g.com/alicj/index3.gif
- DNS ASK up####.king9g.com