Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] 'Shell' = 'Explorer.exe %WINDIR%\IntelInside.exe'
- %WINDIR%\IntelInside.exe
- DNS ASK dn#.##ftncsi.com
- DNS ASK www.fa###rescue.org
- DNS ASK www.go####aradise.net
- DNS ASK va####ons.oatley.us
- ClassName: 'mozillawindowclass' WindowName: ''
- ClassName: 'mozilladropshadowwindowclass' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'NDDEAgnt' WindowName: 'NetDDE Agent'