Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] ' ¶ЁК±№Ш»ъ ' = '%PROGRAM_FILES%\¶ЁК±№Ш»ъ\Autoshut.exe /h'
- %PROGRAM_FILES%\¶ЁК±№Ш»ъ\Autoshut.exe
- ClassName: 'RegMonClass' WindowName: ''
- ClassName: 'FileMonClass' WindowName: ''
- %TEMP%\xpluna.ini
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\ver[1].asp
- %PROGRAM_FILES%\¶ЁК±№Ш»ъ\Autoshut.exe
- %TEMP%\6EF82881.TMP
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\ver[1].asp
- %TEMP%\xpluna.ini
- 'up#.#q-it.net':80
- 'so##.sq-it.net':80
- 'localhost':1036
- up#.#q-it.net/soft/ver.asp?po##########################
- so##.sq-it.net/soft/ver.asp?po##########################
- DNS ASK up#.#q-it.net
- DNS ASK so##.sq-it.net
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'TForm3' WindowName: '???????? '
- ClassName: 'Shell_TrayWnd' WindowName: ''