Техническая информация
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] 'Explorer' = '%TEMP%\WindowsGenuine.exe'
- Диспетчера задач (Taskmgr)
- '%ProgramFiles(x86)%\internet explorer\iexplore.exe' http://allinstalls.cz.cc/test2/loads.php
- %TEMP%\windowsgenuine.exe
- DNS ASK al####talls.cz.cc
- ClassName: 'Button' WindowName: ''
- ClassName: 'Static' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''