Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{1D1106AB-FF80-41e9-A8C7-CBFF4841BD4B}] 'stubpath' = ''
- 'C:\sysinfo.exe'
- 'C:\sysinfo.exe' (загружен из сети Интернет)
- <SYSTEM32>\sysinfo.exe
- C:\sysinfo.exe
- 'www.vi###total.com':80
- 'localhost':1038
- http://www.vi###total.com/img/VirusTotal-logo.png
- DNS ASK www.vi###total.com