Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'java.exe' = '<SYSTEM32>\java.exe'
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{CFFC4DCC-FE72-39B4-07B1-66304706EEDA}] 'StubPath' = '<SYSTEM32>\java.exe'
- %WINDIR%\Explorer.EXE
- Idle
- <SYSTEM32>\java.exe
- 'sn#####kermes.zapto.org':3460
- DNS ASK sn#####kermes.zapto.org