Техническая информация
- [<HKCU>\Software\Microsoft\Internet Explorer\Extensions\{F2C63239-A5DB-487B-B283-4132351E7AB6}] 'Exec' = 'http://www.my180.com'
- '%WINDIR%\regedit.exe'
- [<HKLM>\SOFTWARE\Microsoft\MessengerService]
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer] 'NoInternetIcon' = '00000001'
- %WINDIR%\dao.ico
- %HOMEPATH%\My Documents\QQЕъБїЧФ¶ЇµЗВјЖч.exe
- %TEMP%\E_4\ERawSock.fne
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\esoft[1].htm
- %ALLUSERSPROFILE%\Desktop\Internet Explorer.lnk
- %WINDIR%\hang.ico
- %TEMP%\E_4\internet.fne
- %TEMP%\E_4\eAPI.fne
- %TEMP%\E_4\vclbase.fne
- %TEMP%\E_4\krnln.fnr
- %TEMP%\E_4\sock.fne
- %TEMP%\E_4\shell.fne
- %TEMP%\E_4\HtmlView.fne
- %ALLUSERSPROFILE%\Desktop\Internet Explorer.lnk
- 'my##0.com':80
- 'localhost':1036
- my##0.com/images/esoft/esoft.htm?QQ##################
- DNS ASK my##0.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: '(null)' WindowName: '(null)'
- ClassName: 'RegEdit_RegEdit' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'regedit.exe'