Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\RunOnce] '{D9033079-2B85-6FD1-F761-C1CBA6419D5A}' = '%TEMP%\drlhasnh.exe'
- '%TEMP%\drlhasnh.exe'
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\HOzZqCpPV7k5L0ciLepe1I9ETVEBKtzCE5%2b9pVZAQftxS42hHt9BxUAK8CkluGJefO0jjuLa5XjXaX0hl6QCygB44tnfayt70apFviVD83x0URIsFMD9EVC6YG0HSp6vNa%2fArxLP%2bfs%2fkm42E9[1]
- %TEMP%\drlhasnh.exe
- %TEMP%\setup.dat
- '21#.#24.126.66':80
- 'localhost':1036
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: '{221406BB-E809-484F-A6F3-B3184DFC95C0}' WindowName: '(null)'
- ClassName: '' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'