Техническая информация
- <SYSTEM32>\winlogon.exe
- <SYSTEM32>\winlogon.exe %WINDIR%\system\winlogon.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\CAHXUJ09.asp
- %WINDIR%\system\winlogon.exe
- '78.##upay.com':80
- 'localhost':1037
- DNS ASK 78.##upay.com
- ClassName: 'SHELLDLL_DefView' WindowName: ''
- ClassName: 'SysListView32' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Progman' WindowName: ''