Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\T1Crr6fXr] 'Start' = '00000002'
- %CommonProgramFiles%\lanmao.exe
- <SYSTEM32>\svchost.exe -k netsvcs
- %WINDIR%\vbcfg.ini
- %WINDIR%\Win.ini
- %CommonProgramFiles%\yiranr.dll
- %CommonProgramFiles%\lanmao.xxx
- %WINDIR%\vbcfg.ini
- %WINDIR%\win.ini
- 'ip#####s512.3322.org':8088
- DNS ASK ip#####s512.3322.org
- '<IP-адрес в локальной сети>':1033