Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] '%TEMP%\INJ1.tmp' = '%TEMP%\INJ1.tmp:*:enabled:@shell32.dll,-1'
- '%TEMP%\INJ1.tmp'
- %WINDIR%\Explorer.EXE
- %TEMP%\INJ1.tmp
- '13#.#8.121.248':80
- http://13#.#8.121.248/request/autok?us########################################################
- ClassName: 'Shell_TrayWnd' WindowName: ''