Техническая информация
- ClassName: 'OLLYDBG', WindowName: ''
- %WINDIR%\Fonts\5YF2ZZgJSdOOaF.exe
- %TEMP%\80EB2F5C
- <DRIVERS>\etc\hosts.ics
- <SYSTEM32>\COMCTL32.OCX
- <SYSTEM32>\COMDLG32.OCX
- <SYSTEM32>\MSINET.OCX
- %WINDIR%\Fonts\5YF2ZZgJSdOOaF.exe
- <DRIVERS>\etc\hosts
- 'localhost':1039
- 'ci######ongans.blogspot.com':80
- 'pe#######n-cits.blogspot.com':80
- http://pe#######n-cits.blogspot.com/2015/09/error-file.html
- DNS ASK ci######ongans.blogspot.com
- DNS ASK pe#######n-cits.blogspot.com
- ClassName: '' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- '%WINDIR%\Fonts\5YF2ZZgJSdOOaF.exe'
- '<SYSTEM32>\cmd.exe' /c icacls <DRIVERS>\etc\hosts /reset
- '<SYSTEM32>\cmd.exe' /c icacls <DRIVERS>\etc\hosts.ics /reset
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' -nohome