Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'WarnonBadCertRecving' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings] 'WarnOnZoneCrossing' = '00000000'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3] '1601' = '00000000'
- %HOMEPATH%\Desktop\System Check.lnk
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\System Check.lnk
- %HOMEPATH%\Start Menu\Programs\System Check\Uninstall System Check.lnk
- %ALLUSERSPROFILE%\Application Data\CREkmuaslrY
- %HOMEPATH%\Start Menu\Programs\System Check\System Check.lnk
- из <Полный путь к файлу> в %ALLUSERSPROFILE%\Application Data\CREkmuaslrY.exe
- 'am####mniful.com':80
- 'el###urfen.com':80
- 're####ormigoat.com':80
- 'wi##ijs.com':80
- 'pl###amdaub.com':80
- 'st####gytorrent.com':80
- http://el###urfen.com/britix/a
- http://am####mniful.com/britix/ar
- http://am####mniful.com/britix/a
- http://re####ormigoat.com/britix/ar
- http://re####ormigoat.com/britix/a
- http://el###urfen.com/britix/ar
- http://pl###amdaub.com/britix/ar
- http://pl###amdaub.com/up.php?0Q##################################################################
- http://wi##ijs.com/britix/ar
- http://wi##ijs.com/britix/a
- http://pl###amdaub.com/britix/a
- http://st####gytorrent.com/britix/ar
- http://st####gytorrent.com/britix/a
- DNS ASK am####mniful.com
- DNS ASK el###urfen.com
- DNS ASK re####ormigoat.com
- DNS ASK wi##ijs.com
- DNS ASK pl###amdaub.com
- DNS ASK st####gytorrent.com
- ClassName: 'Shell_TrayWnd' WindowName: ''