Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'MicrosoftStatusResSystem' = '"%APPDATA%\MicrosoftStatusRes\z.exe"'
- '%PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE' -noframemerging http://sc##pi0n
- '<SYSTEM32>\svchost.exe'
- <SYSTEM32>\ctfmon.exe
- %APPDATA%\MicrosoftStatusRes\z.exe
- 'localhost':1038
- 'localhost':1037
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: '' WindowName: 'Set Up Windows Internet Explorer 10'
- ClassName: '' WindowName: 'Set Up Windows Internet Explorer 11'
- ClassName: 'Address Band Root' WindowName: ''
- ClassName: 'Edit' WindowName: ''
- ClassName: 'ReBarWindow32' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'WorkerW' WindowName: ''
- ClassName: '' WindowName: 'Security Alert'
- ClassName: '' WindowName: 'Internet Explorer 11'
- ClassName: '' WindowName: 'Internet Explorer'
- ClassName: 'Indicator' WindowName: ''
- ClassName: '' WindowName: 'Windows Internet Explorer'
- ClassName: '' WindowName: 'Set Up Windows Internet Explorer 8'
- ClassName: '' WindowName: 'Set Up Windows Internet Explorer 9'
- ClassName: '' WindowName: 'Internet Explorer 10'
- ClassName: '' WindowName: 'Internet Explorer 8'
- ClassName: '' WindowName: 'Internet Explorer 9'