Техническая информация
- [HKLM\System\CurrentControlSet\Services\MSCOManager06] 'Start' = '00000002'
- [HKLM\System\CurrentControlSet\Services\MSCOManager06] 'ImagePath' = '<SYSTEM32>\svchost.exe -k netsvcs'
- [HKLM\SYSTEM\CurrentControlSet\Services\MSCOManager06\Parameters] 'ServiceDll' = '%WINDIR%\inf\oem201.inf'
- 'MSCOManager06' <SYSTEM32>\svchost.exe -k netsvcs
- ClassName: 'AVP.AlertDialog', WindowName: 'Ö÷¶¯·ÀÓù'
- %WINDIR%\syswow64\inf\msdcomfix.exe
- %WINDIR%\syswow64\inf\07.exe
- %WINDIR%\inf\msdcomfix.exe
- %WINDIR%\syswow64\5985-658
- %WINDIR%\inf\oem201.inf
- %WINDIR%\inf\oem201.inf
- %WINDIR%\inf\oem201.inf
- DNS ASK 88#.#43call.cn
- DNS ASK so##.16990.com
- ClassName: '#32770' WindowName: 'Г—ВўВІГЎВ±ГВѕВЇВёГ¦'
- ClassName: '###McAlertWindow###' WindowName: ''
- ClassName: '#32770' WindowName: 'McAfee Personal Firewall Plus ВѕВЇВ±ВЁ'
- ClassName: 'Afx:400000:0' WindowName: ''
- ClassName: '#32770' WindowName: 'Æ滢360°²È«ÎÀÊ¿'
- '%WINDIR%\syswow64\inf\07.exe'
- '%WINDIR%\syswow64\inf\msdcomfix.exe' /install e25
- '%WINDIR%\inf\msdcomfix.exe'
- '%WINDIR%\inf\msdcomfix.exe' (со скрытым окном)