Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Intel(R) audio control hym' = '%WINDIR%\Intel(R) Graphic control hym.exe'
- <Имя диска съемного носителя>:\My Love.exe
- [<HKCU>\Software\yahoo\pager]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\hackym1[1].asp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\hackym1[1].asp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\hackym1[2].asp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\YPORKZYZ\hackym1[1].asp
- %WINDIR%\Intel(R) Graphic control hym.exe
- C:\My Love.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\hackym1[1].asp
- 'www.es###.somee.com':80
- 'localhost':1035
- www.es###.somee.com/view/hackym1.asp?id##################################
- DNS ASK www.es###.somee.com
- '<IP-адрес в локальной сети>':1036
- ClassName: '' WindowName: 'System Configuration Utility'
- ClassName: 'Indicator' WindowName: ''