Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon] 'shell' = 'Explorer.exe, '
- %TEMP%\services.exe
- %TEMP%\services.exe
- <SYSTEM32>\ .exe
- 'bl######se.freeownhost.com':80
- bl######se.freeownhost.comhttp://blackhouse.freeownhost.com/datos/datos.bin?v=#
- DNS ASK bl######se.freeownhost.com
- '<IP-адрес в локальной сети>':1035