Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'dplafde' = 'rundll32 "%APPDATA%\ccfgkmgr\encatrep.dll",DllRegisterServer'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '%WINDIR%\explorer.exe' = '%WINDIR%\explorer.exe:*:Enabled:Windows Expl...
- %WINDIR%\Explorer.EXE
- opera.exe
- %APPDATA%\ccfgkmgr\encatrep.dll
- '23#.#55.255.250':1900
- '18#.#4.233.150':9772
- ClassName: 'ProgMan' WindowName: ''