Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SVKP] 'Start' = '00000002'
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\web1[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\banol[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\mini[1].php
- <SYSTEM32>\SVKP.sys
- 'ge##.ufree.kr':80
- 'go###.#amehankook.com':80
- 'localhost':1035
- ge##.ufree.kr/bm/web/banol.htm
- ge##.ufree.kr/bm/web/web1.htm
- go###.#amehankook.com/board/mini.php?id############
- DNS ASK ge##.ufree.kr
- DNS ASK go###.#amehankook.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''