Техническая информация
- [<HKLM>\SOFTWARE\Classes\win\shell\open\command] '' = '"%1" %*'
- %HOMEPATH%\Historial\svchost.exe
- %WINDIR%\Temp\yfongzhj.exe
- <SYSTEM32>\attrib.exe +h +r +s %HOMEPATH%\Historial
- AVP.EXE
- %HOMEPATH%\Historial\msconfig.dat
- %HOMEPATH%\Historial\svchost.exe
- %WINDIR%\Temp\sepjkbu.tmp
- %WINDIR%\Temp\yfongzhj.exe
- '21#.#27.70.170':80
- 21#.#27.70.170http://www.aldeamix.com/adultos/sanbot/sanbot.html
- ClassName: 'Shell_TrayWnd' WindowName: ''