Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '9y7lodusai' = '%HOMEPATH%\9y7lodusai.exe'
- %HOMEPATH%\9y7lodusai.exe
- '74.##.200.12':443
- '74.##.200.11':443
- 'jp###452.com':443
- 'la##tok.kz':443
- 'ma##.lapotok.kz':443
- '74.##.200.10':443
- '18#.#73.202.225':443
- '50.##.93.243':443
- '18#.#73.202.224':443
- '50.##.205.49':443
- '50.##.205.48':443
- DNS ASK la##tok.kz
- DNS ASK www.la##tok.kz
- DNS ASK jp###452.com
- DNS ASK ma##.lapotok.kz
- ClassName: 'Indicator' WindowName: ''