Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'OKGO' = 'C:\Arquivos de programas\Winlogins.exe'
- %WINDIR%\system\LOGS.TLB
- %WINDIR%\ponto.DLL
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\SYSTEM[1].TLB
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\mirror[1].txt
- %WINDIR%\system\LEXPA.DRV
- 'www.di#####aputaria.by.ru':80
- 'localhost':1036
- www.di#####aputaria.by.ru/SMTP/SYSTEM.TLB
- www.di#####aputaria.by.ru/mirror.txt
- DNS ASK www.di#####aputaria.by.ru
- ClassName: 'Indicator' WindowName: ''