Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\Microsoft Essential.lnk
- <SYSTEM32>\reg.exe add "HKCU\AppEvents\Schemes\Apps\Explorer\Navigating\.Current" /f /ve /t reg_expand_sz /d a
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\google.com[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\google.com[1]
- %APPDATA%\Microsoft\Internet Explorer\scvhost.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\google.com[1]
- 'www.go###e.com.tr':80
- 'localhost':1037
- 'ho####.silmasaatio.net':80
- www.go###e.com.tr/
- ho####.silmasaatio.net/Service1.asmx
- DNS ASK www.go###e.com.tr
- DNS ASK ho####.silmasaatio.net
- ClassName: 'Shell Embedding' WindowName: ''
- ClassName: 'TTabSheet' WindowName: 'main'
- ClassName: 'Internet Explorer_Server' WindowName: ''
- ClassName: 'Shell DocObject View' WindowName: ''
- ClassName: 'TPageControl' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Tsystemobj' WindowName: 'systemobj'
- ClassName: 'MS_WebcheckMonitor' WindowName: ''