Техническая информация
- <SYSTEM32>\COMCTL32.OCX
- <SYSTEM32>\COMDLG32.OCX
- <SYSTEM32>\MSINET.OCX
- C:\sbhea.dll
- <DRIVERS>\etc\hosts
- 'localhost':1038
- 'ci######ongans.blogspot.com':80
- 'localhost':1041
- 'dr###rme.com':80
- http://ci######ongans.blogspot.com/
- http://dr###rme.com/
- DNS ASK ci######ongans.blogspot.com
- DNS ASK dr###rme.com
- ClassName: '' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- '<SYSTEM32>\cmd.exe' /c icacls <DRIVERS>\etc\hosts /reset
- '<SYSTEM32>\cmd.exe' /c icacls %WINDIR%\Volume.dll /deny administrators:F
- '<SYSTEM32>\cmd.exe' /c icacls %WINDIR%\Volume.dll /deny Users:F
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' -nohome