Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'ServiceTef' = '%WINDIR%\ctfmon.exe'
- '%WINDIR%\ctfmon.exe'
- %WINDIR%\notepad.cfg
- %WINDIR%\ctfmon.exe
- 'sc####.no-ip.biz':4321
- DNS ASK sc####.no-ip.biz
- DNS ASK www.go###e.com.br
- ClassName: 'Indicator' WindowName: '(null)'