Техническая информация
- [<HKLM>\SOFTWARE\Classes\WINK File\shell\open\command] '' = '%PROGRAM_FILES%\dialers\dlux\dlux.exe %1'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'dlux' = '%PROGRAM_FILES%\dialers\dlux\dlux.exe /noconnect'
- %PROGRAM_FILES%\dialers\dlux\dlux.exe -kill <Полный путь к вирусу> /install
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\getclientid[1]
- %TEMP%\WK_1.tmp
- %PROGRAM_FILES%\dialers\dlux\dlux.exe
- <SYSTEM32>\dlux-uninstall.exe
- '20#.#77.92.204':80
- 'localhost':1036
- 20#.#77.92.204/w/getclientid?sr#############################################
- ClassName: '' WindowName: 'dlux'
- ClassName: 'DLUX' WindowName: ''