Техническая информация
- %WINDIR%\applica12.dll
- 'localhost':1036
- 'e9##.space':80
- 'localhost':1039
- 'bi#.ly':80
- http://e9##.space/pri/gonang2/applica12.dll
- http://e9##.space/pri/AgPerfMon.dll
- http://e9##.space/pri/hosts
- http://bi#.ly/2s6WQ2w
- DNS ASK e9##.space
- DNS ASK bi#.ly
- ClassName: '' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- '<SYSTEM32>\cmd.exe' /c COLOR A
- '<SYSTEM32>\cmd.exe' /c start http://bi#.ly/2s6WQ2w
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' -nohome