Техническая информация
- [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'LeyuBoxData' = ''
- [HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'KingSoft PowerWord PE' = ''
- [HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] 'ÍøÂçµçÊÓ' = ''
- '%ProgramFiles(x86)%\internet explorer\iexplore.exe' http://www.mysuda.cn/5.htm
- 'my##da.cn':80
- http://www.my##da.cn/5.htm
- DNS ASK ca###leep.cn
- DNS ASK my##da.cn
- ClassName: '' WindowName: '¹È¸è½ðɽ´Ê°ÔºÏ×÷°æ2.0 °²×°'
- ClassName: '' WindowName: '¹È¸è½ðɽ´Ê°ÔºÏ×÷°æ2.0 °²×° '
- ClassName: '' WindowName: '¹È¸è½ðɽ´Ê°Ô2.0 ÉèÖÃÏòµ¼'
- ClassName: '' WindowName: '¹È¸è½ðɽ´Ê°ÔºÏ×÷°æ °²×°'
- ClassName: '#32770' WindowName: ''
- ClassName: 'Static' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- ClassName: '' WindowName: '¹È¸è½ðɽ´Ê°ÔºÏ×÷°æ °²×° '
- '%ProgramFiles(x86)%\internet explorer\iexplore.exe' http://www.mysuda.cn/5.htm (со скрытым окном)