Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Gogle' = '%PROGRAM_FILES%\GooUp.exe'
- Средство контроля пользовательских учетных записей (UAC)
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Policies\Associations] 'LowRiskFileTypes' = '.exe;.com;.scr'
- %PROGRAM_FILES%\GooUp.exe
- <DRIVERS>\etc\hosts
- 'in###netgxx.com':80
- 'www.jo##new.com':80
- in###netgxx.com/new/live.php
- www.jo##new.com/jogo.jsp
- DNS ASK jo##new.com
- DNS ASK in###netgxx.com
- DNS ASK www.jo##new.com
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''