Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Log' = '%HOMEPATH%\WinRAR\logs.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'WinRAR' = '%APPDATA%\WinRAR\WinRAR.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Document' = '%HOMEPATH%\My Documents\WinRAR\logs.exe'
- %HOMEPATH%\WinRAR\logs.exe
- %APPDATA%\WinRAR\WinRAR.exe
- %HOMEPATH%\My Documents\WinRAR\logs.exe
- 'kh####4.sytes.net':80
- kh####4.sytes.net/ping.php
- DNS ASK kh####4.sytes.net
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Indicator' WindowName: ''