Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'mmc' = '%APPDATA%\Microsoft\MMC\mmc.exe'
- '%APPDATA%\Microsoft\MMC\mmc.exe'
- '<SYSTEM32>\ping.exe' 127.0.0.1 -n 5
- %APPDATA%\Microsoft\MMC\mmc.exe
- 'ho###.mysaol.com':8080
- 'ho###.mysaol.com':443
- 'ho###.mysaol.com':80
- ho###.mysaol.com/common.asp
- DNS ASK ho###.mysaol.com
- ClassName: 'Indicator' WindowName: '(null)'