Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'systemup' = '"%WINDIR%\systemup.exe" stand'
- %WINDIR%\systemup.exe stand
- <SYSTEM32>\netstat.exe -ano
- <SYSTEM32>\taskkill.exe /F /IM systemup.exe
- %WINDIR%\systemup.exe
- '93.##.198.25':62999
- '91.##7.211.50':62999
- '46.##0.95.67':62999
- '77.##2.68.133':62999
- '94.##0.169.98':62999
- '84.##2.12.106':62999
- '46.##.39.229':62999
- '88.##2.213.36':62999
- '21#.#82.98.115':62999
- '11.#1.11.11':55611
- '87.##1.70.206':62999
- 'yo##ube.com':80
- '77.#9.31.25':62999
- '18#.#6.165.242':62999
- '93.##.216.250':62999
- '79.##6.28.169':62999
- '10#.#27.98.108':62999
- '93.##.90.181':62999
- yo##ube.com/
- DNS ASK yo##ube.com
- ClassName: '' WindowName: ''