Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Control\Session Manager] 'BootExecute' = 'Partizan'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'SymantecFilterCheck' = '<SYSTEM32>\gmilogof.exe'
- C:\smss11.ini
- <Полный путь к файлу>
- C:\smss11.ini
- 'co#####r-aviso.rg9.net':80
- '74.##5.232.51':25
- 'localhost':1040
- http://co#####r-aviso.rg9.net/
- DNS ASK co#####r-aviso.rg9.net
- DNS ASK gm######tp-in.l.google.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'NDDEAgnt' WindowName: 'NetDDE Agent'
- ClassName: 'MS_AutodialMonitor' WindowName: ''