Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'winlogon' = '%WINDIR%\svchost.exe'
- %WINDIR%\svchost.exe
- %PROGRAM_FILES%\Company\Goddess Auto\Goddess.sdf
- %PROGRAM_FILES%\Company\Goddess Auto\ObjectListView.dll
- %PROGRAM_FILES%\Company\Goddess Auto\Goddess.exe
- %PROGRAM_FILES%\Company\Goddess Auto\Goddess.exe.config
- %PROGRAM_FILES%\Company\Goddess Auto\VLHook.dll
- %PROGRAM_FILES%\Company\Goddess Auto\Uninstall.ini
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\auto-pk-kiemthe-goddess[1].html
- %PROGRAM_FILES%\Company\Goddess Auto\Uninstall.exe
- %HOMEPATH%\Desktop\Goddess Auto.lnk
- %PROGRAM_FILES%\Company\Goddess Auto\fasmdll_managed.dll
- %TEMP%\$inst\5.tmp
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\4.tmp
- %TEMP%\chup.a3x
- %WINDIR%\svchost.exe
- %PROGRAM_FILES%\Company\Goddess Auto\BlackMagic.dll
- %TEMP%\down.a3x
- %TEMP%\ie1.a3x
- %TEMP%\$inst\4.tmp
- %TEMP%\$inst\5.tmp
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- 'www.au###iemthe.net':80
- 'localhost':1035
- www.au###iemthe.net/2012/05/auto-pk-kiemthe-goddess.html
- DNS ASK www.au###iemthe.net
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''