Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\Windows Recycled Services] 'Start' = '00000002'
- [<HKLM>\SYSTEM\ControlSet001\Services\Windows Recycled Services] 'ImagePath' = '%CommonProgramFiles%\Microsoft Shared\MSINFO\Recycled.scr'
- <SYSTEM32>\svchost.exe
- IEXPLORE.EXE
- ClassName: 'OLLYDBG', WindowName: ''
- ClassName: 'GBDYLLO', WindowName: ''
- ClassName: 'pediy06', WindowName: ''
- %CommonProgramFiles%\Microsoft Shared\MSInfo\2010.txt
- %CommonProgramFiles%\Microsoft Shared\MSInfo\Recycled.scr
- C:\AutoRun.inf
- C:\Recycled.scr
- %ProgramFiles%\RRecycled.scr
- %CommonProgramFiles%\Microsoft Shared\MSInfo\Recycled.scr
- C:\AutoRun.inf
- C:\Recycled.scr
- %ProgramFiles%\RRecycled.scr
- <Полный путь к файлу>
- %CommonProgramFiles%\Microsoft Shared\MSInfo\2010.txt
- 'tt####9121.3322.org':9121
- DNS ASK tt####9121.3322.org
- ClassName: 'TAppBuilder' WindowName: ''
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'TSiInMay' WindowName: ''
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE'
- '<SYSTEM32>\svchost.exe'