Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'vvt705sync0pat.exe' = '%APPDATA%\C846E90162616F3CBA9E4126F741E560\vvt705sync0pat.exe'
- %APPDATA%\C846E90162616F3CBA9E4126F741E560\vvt705sync0pat.exe -i C846E90162616F3CBA9E4126F741E560 7070510100
- %APPDATA%\C846E90162616F3CBA9E4126F741E560\local.ini
- %APPDATA%\C846E90162616F3CBA9E4126F741E560\enemies-names.txt
- %APPDATA%\C846E90162616F3CBA9E4126F741E560\vvt705sync0pat.exe
- 'ou###atus.in':80
- ou###atus.in/install.php?do#########################################################################################
- ou###atus.in/
- DNS ASK s.###status.in
- DNS ASK ou###atus.in
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Indicator' WindowName: ''