Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'msnmager' = '<SYSTEM32>\rundll32.exe %TEMP%\hcbggb.dll,Set1'
- <SYSTEM32>\cmd.exe /c ""%TEMP%\d.bat" "
- <SYSTEM32>\rundll32.exe %TEMP%\hcbggb.dll,Set1
- %TEMP%\3.log
- %TEMP%\d.bat
- %TEMP%\hcbggb.dll
- 'gt##.info':80
- gt##.info/1.txt
- gt##.info/tj/install.asp?in################
- DNS ASK gt##.info
- ClassName: 'Indicator' WindowName: ''