Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'avast!' = '%PROGRAM_FILES%\ALWILS\Avast4\ashDisp.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'avast5' = 'C:\ARQUIV~1\ALWILS\Avast5\avastUI.exe \nogui'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'MSNGS' = '<LS_APPDATA>\msmsgs.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'AVG9_TRAY' = '%PROGRAM_FILES%\AVG9\avgtray.exe'
- Средство контроля пользовательских учетных записей (UAC)
- 'su###vps.com.br':80
- su###vps.com.br/mshot.txt
- su###vps.com.br/html.txt
- su###vps.com.br/htp.txt
- su###vps.com.br/modulo.txt
- DNS ASK su###vps.com.br