Техническая информация
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] 'GoogleUpdate' = '%APPDATA%\FrameworkUpdate\GoogleUpdate.exe'
- '%ProgramFiles%\internet explorer\iexplore.exe' -noframemerging http://megasearchresults.com/?aff=7194&saff=loca&source=1
- '%ProgramFiles%\internet explorer\iexplore.exe' -noframemerging http://searchtransfering.com/go?feed_id=10164&sub_id=local
- <SYSTEM32>\svchost.exe
- %APPDATA%\frameworkupdate\googleupdate.exe
- %APPDATA%\麽鎒駓覜
- %ALLUSERSPROFILE%\@system3.att
- %APPDATA%\麽鎒駓覜
- %ALLUSERSPROFILE%\@system3.att
- DNS ASK te##ze.com
- '17#.#02.38.72':101
- '%APPDATA%\frameworkupdate\googleupdate.exe'
- '<SYSTEM32>\svchost.exe'
- '<SYSTEM32>\ctfmon.exe'