Техническая информация
- %ALLUSERSPROFILE%\Start Menu\Programs\Startup\TotalScaner.lnk
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'DoNotAllowExceptions' = '00000000'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'EnableFirewall' = '00000000'
- %WINDIR%\svhost.exe
- <SYSTEM32>\netsh.exe firewall set opmode DISABLE
- %TEMP%\aut2.tmp
- %TEMP%\pihudlk
- %WINDIR%\svhost.exe
- %TEMP%\aut1.tmp
- %TEMP%\ntejjop
- %TEMP%\aut2.tmp
- %TEMP%\pihudlk
- %TEMP%\aut1.tmp
- %TEMP%\ntejjop
- 'ir#.###inegamesnet.net':6667
- DNS ASK ir#.###inegamesnet.net
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''