Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'conime.exe' = ''
- %WINDIR%\Tasks\k.reg
- %WINDIR%\Tasks\conime.exe
- %WINDIR%\Tasks\svchost.exe
- '%WINDIR%\Tasks\conime.exe'
- '%WINDIR%\Tasks\svchost.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\msservice.bat
- '%WINDIR%\regedit.exe' /s %WINDIR%\tasks\k.reg
- <Текущая директория>\Структура квалификационных экзаменов.doc
- %TEMP%\msservice.bat
- %CommonProgramFiles%\Структура квалификационных экзаменов.doc
- %WINDIR%\Tasks\k.reg
- %TEMP%\~DF5342.tmp
- 'lu####an.ddns.info':80
- 'lu####aby.ddns.info':80
- DNS ASK lu####an.ddns.info
- DNS ASK lu####aby.ddns.info
- ClassName: 'RegEdit_RegEdit' WindowName: '(null)'
- ClassName: 'Indicator' WindowName: '(null)'
- ClassName: 'WordPadClass' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'