Техническая информация
- [<HKCU>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '18.exe' = '%APPDATA%Microsoft\System\Services\18.exe'
- [<HKLM>\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] '18.exe' = '%APPDATA%Microsoft\System\Services\18.exe'
- %WINDIR%\microsoft.net\framework\v2.0.50727\cvtres.exe
- %APPDATA%microsoft\system\services\18.exe
- %LOCALAPPDATA%\microsoft\windows\history\history.ie5\mshist012021061620210617\index.dat
- 'google.com':80
- 'google.com':443
- '79.##4.155.51':7777
- 'google.com':443
- DNS ASK google.com
- DNS ASK microsoft.com
- ClassName: 'DDEMLMom' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'Static' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- '%WINDIR%\microsoft.net\framework\v2.0.50727\cvtres.exe'