Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'InfoWise' = '%PROGRAM_FILES%\InfoWise\InfoWise.exe'
- '%PROGRAM_FILES%\InfoWise\InfoWise.exe'
- '<SYSTEM32>\regsvr32.exe' /s "%PROGRAM_FILES%\InfoWise\InfoWise.dll"
- Библиотека-обработчик для всех процессов: %PROGRAM_FILES%\InfoWise\adck.dll
- %PROGRAM_FILES%\InfoWise\uninstall.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\mlist2[1].ini
- %PROGRAM_FILES%\InfoWise\mlist2.ini
- %PROGRAM_FILES%\InfoWise\InfoWise.exe
- %PROGRAM_FILES%\InfoWise\InfoWise.dll
- %PROGRAM_FILES%\InfoWise\adck.dll
- 'se####.wisebar.co.kr':80
- se####.wisebar.co.kr/Update/blist3.ini
- se####.wisebar.co.kr/Update/IW03/InfoWise.ini
- se####.wisebar.co.kr/Update/blist2.ini
- se####.wisebar.co.kr/install.asp?ve######################################
- se####.wisebar.co.kr/Update/mlist2.ini
- DNS ASK se####.wisebar.co.kr
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'