Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'icq' = '%APPDATA%\Microsoft\uhahtjsr\rhctbwhj.exe'
- %WINDIR%\explorer.exe
- %APPDATA%\microsoft\uhahtjsr\rhctbwhj.exe
- %APPDATA%\microsoft\uhahtjsr\rhctbwhj.exe
- 'mo##lla.org':80
- 'mo##lla.org':443
- 'visualstudio.microsoft.com':443
- '13#.#9.208.246':53
- '13#.#55.73.90':53
- '31.#.135.232':53
- '52.##4.55.168':53
- DNS ASK mo##lla.org
- DNS ASK go.microsoft.com
- DNS ASK msdn.microsoft.com
- DNS ASK visualstudio.microsoft.com
- '%WINDIR%\explorer.exe'