Техническая информация
- '%TEMP%\clssicar.exe'
- '<SYSTEM32>\conhost.exe' /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
- %TEMP%\clssicar.exe
- %TEMP%\CLSID101.log
- '73.#3.45.44':443
- '38.##.38.186':443
- '64.##3.121.6':443
- '67.##8.207.20':443
- '67.##8.207.19':443
- '38.##4.169.187':443
- '18#.#31.34.130':443
- '38.##3.202.197':443
- '38.##4.169.178':443
- '38.##3.202.3':443
- '24.##.235.120':443
- '21#.#34.249.239':443
- '38.##.39.108':443
- '24.##0.92.193':443
- '38.##.36.134':443
- '16#.#55.126.8':443
- '67.##8.207.22':443
- '64.##.77.203':443
- '64.#8.204.3':443
- '67.##.207.174':443
- DNS ASK dn#.##ftncsi.com
- DNS ASK ic###azip.com
- ClassName: 'Shell_TrayWnd' WindowName: ''