Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'optimization_321004' = '%APPDATA%\Биёз\nvsmartmaxapp.exe'
- %HOMEPATH%\Desktop\Internet Explorer.lnk
- %HOMEPATH%\Start Menu\Internet Explorer.lnk
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk
- %APPDATA%\Биёз\nvsmartmax.dll
- C:\Биёз\ЦчТі\Home.exe
- C:\Биёз\ЦчТі\config.ini
- %APPDATA%\Биёз\nvsmartmaxapp.exe
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Internet Explorer.lnk
- %HOMEPATH%\Start Menu\Programs\Internet Explorer.lnk
- 'pa#.#anzou.com':80
- 'ca###ha.qq.com':80
- http://pa#.#anzou.com/x/566336
- http://ca###ha.qq.com/getimage?ai##############################
- DNS ASK pa#.#anzou.com
- DNS ASK ca###ha.qq.com
- ClassName: 'Shell_TrayWnd' WindowName: ''