Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] 'TTP Ad Ctrl' = '{04B21D11-8112-4C32-880C-0531DC50C7FC}'
- <SYSTEM32>\calc.exe
- %WINDIR%\regedit.exe
- %WINDIR%\Explorer.EXE
- %PROGRAM_FILES%\TTPlayer\TTPAdvCtrl.dll
- DNS ASK 24#######3c65c91.d2plus.info