Техническая информация
- [<HKCU>\Software\Microsoft\Internet Explorer\Extensions\{F2C63239-A5DB-487B-B283-4132351E7AB6}] 'Exec' = '<SYSTEM32>\crnjeufu.lnk'
- %WINDIR%\regedit.exe
- [<HKLM>\SOFTWARE\Microsoft\MessengerService]
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 'NoInternetIcon' = '00000001'
- <SYSTEM32>\crnjeufu.lnk
- %HOMEPATH%\Start Menu\Programs\Internet Explorer.lnk
- <SYSTEM32>\hang.ico
- <SYSTEM32>\dao.ico
- %HOMEPATH%\Start Menu\Internet Explorer.lnk
- %ALLUSERSPROFILE%\Desktop\Internet Explorer.lnk
- %HOMEPATH%\My Documents\КµСйіМРт.exe
- %ALLUSERSPROFILE%\Desktop\ЎЎInternetЎЎЎЎExplorerЎЎ.lnk
- %PROGRAM_FILES%\Internet Explorer\crnjeufu.EXE
- %HOMEPATH%\Start Menu\Internet Explorer.lnk
- %HOMEPATH%\Start Menu\Programs\Internet Explorer.lnk
- %ALLUSERSPROFILE%\Desktop\Internet Explorer.lnk
- %ALLUSERSPROFILE%\Desktop\ЎЎInternetЎЎЎЎExplorerЎЎ.lnk
- 'my##0.com':80
- 'localhost':1035
- my##0.com/%D0%9A%C2%B5%D0%A1%D0%B9%D1%96%D0%9C%D0%A0%D1%82.exe
- DNS ASK my##0.com
- ClassName: 'RegEdit_RegEdit' WindowName: ''
- ClassName: '' WindowName: 'regedit.exe'
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''