Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Windows32 Process Host Services' = '"%WINDIR%\svshost.exe"'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Win Process Updates' = '"<SYSTEM32>\winupdates.exe"'
- <Текущая директория>\log_windows_microsoft.ls
- %TEMP%\~DFC0A6.tmp
- '67.##5.160.76':5001
- DNS ASK vc#.##.#ip.dcn.yahoo.com
- ClassName: 'Indicator' WindowName: ''