Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\O6cp6CMIm5YP7Et.lnk
- %ProgramFiles%\c6lmNfkOIyWuVLv.exe
- 'mi###idemo.com':80
- 'tr###yget.com':80
- 'localhost':1037
- 'sr###vent.com':80
- http://tr###yget.com/api.php?g=############################
- http://mi###idemo.com/search.php?g=############################
- http://sr###vent.com/img.php?g=############################
- DNS ASK tr###yget.com
- DNS ASK mi###idemo.com
- DNS ASK sr###vent.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''