Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Java Update' = '%APPDATA%\java\explorer.exe'
- %APPDATA%\java\Set.bin
- %APPDATA%\java\explorer.exe
- 'pi#####ogiste.net76.net':80
- 'wp#d':80
- pi#####ogiste.net76.net/ip.php
- wp#d/wpad.dat
- pi#####ogiste.net76.net/socks5.php
- DNS ASK pi#####ogiste.net76.net
- DNS ASK wp#d