Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\RunOnce] '036DFF85F449AEB216015612E56C3425' = '%ALLUSERSPROFILE%\Application Data\036DFF85F449AEB216015612E56C3425\036DFF85F449AEB216015612E56C3425.exe'
- iexplore.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\urls[1]
- '11#.#21.178.189':80
- 11#.#21.178.189/api/urls/?ts#####################
- ClassName: 'Shell_TrayWnd' WindowName: ''