Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'netgod100909' = 'C:\Google\Update1002\hkcmd.exe'
- C:\Google\Update1002\hkcmd.exe Йѕ%WINDIR%\hgsJ7GA6YCHBDOA67p0C.EXE
- C:\Google\Update1002\hkcmd.exe
- %WINDIR%\5owMonsUuPiyo6EUmglw.exe
- %WINDIR%\hgsJ7GA6YCHBDOA67p0C.EXE
- C:\Google\Update1002\hkcmd.chm
- C:\Google\Update1002\hkcmd.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\cns!D674A1535C3298D0!145[1].entry
- %WINDIR%\win32.btl
- %WINDIR%\5owMonsUuPiyo6EUmglw.exe
- %WINDIR%\hgsJ7GA6YCHBDOA67p0C.EXE
- %WINDIR%\hgsJ7GA6YCHBDOA67p0C.EXE
- 'lq#######g1984.spaces.live.com':80
- 'localhost':1035
- lq#######g1984.spaces.live.com/blog/cns!D674A1535C3298D0!145.entry
- DNS ASK lq#######g1984.spaces.live.com
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''