Техническая информация
- '<SYSTEM32>\reg.exe' add "HKCU\Software\Microsoft\Internet Explorer\Main" /v "Start Page" /d "http://www.ad###meeter.com/?ac###############" /f
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' -nohome
- '<SYSTEM32>\cmd.exe' /c %TEMP%\bt8081.bat <Полный путь к файлу>
- %HOMEPATH%\Local Settings\<INETFILES>\Content.IE5\KHMHGZ4F\E-Card-ok[1].php
- %TEMP%\bt8081.bat
- %TEMP%\bt8081.bat
- '82.##1.81.100':80
- 'localhost':1036
- http://82.##1.81.100/Hallmark/E-Card-ok.php
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''