Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'ImportantWinFile' = '<LS_APPDATA>\Winssys.exe'
- <LS_APPDATA>\Loinf.ini
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\indent6[1].png
- <LS_APPDATA>\Winssys.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\defaut[1].jpg
- <LS_APPDATA>\Loinf.ini
- 'www.tr####choice.com.au':80
- 'www.my###elink.com':80
- 'localhost':1036
- www.tr####choice.com.au/images/M_images/indent6.png
- www.my###elink.com/images/com_adsmanager/files/defaut.jpg
- DNS ASK www.tr####choice.com.au
- DNS ASK www.my###elink.com
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'Indicator' WindowName: ''