Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'desktom' = 'c:\pursue\!update.exe'
- [<HKCU>\Software\Microsoft\Internet Explorer\Desktop\Components\0] 'Source' = 'about:blank'
- C:\pursue\ww.exe /s dplus.dll
- C:\pursue\desktom.exe
- C:\pursue\!update.exe
- C:\pursue\desktom.exe
- C:\pursue\ww.exe
- C:\pursue\dplus.dll
- C:\pursue\load.exe
- 'ad#.#g628.com':2000
- DNS ASK ad#.#g628.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'BaseBar' WindowName: 'ChanApp'
- ClassName: 'EDIT' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'SysListView32' WindowName: ''