Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\explorer\run] 'ishost.exe' = 'ishost.exe'
- <SYSTEM32>\ismini.exe
- <SYSTEM32>\components\flx0.dll
- <SYSTEM32>\ismini.exe
- '85.##5.115.181':80
- 85.##5.115.181/pic/animals/wild/getimage.php?pa################################################