Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'TaskManager' = '"%PROGRAMDATA%\Task.Manager\Task Manager.exe" '
- %PROGRAMDATA%\task.manager\task manager.exe
- %PROGRAMDATA%\task.manager\msvcr120.dll
- %PROGRAMDATA%\task.manager\comdrivers.txt
- http://pa###text.biz/update_text.txt
- http://pa###bin.com/raw/87DwvezD
- DNS ASK pa###text.biz
- DNS ASK ra#.####ubusercontent.com
- DNS ASK pa###bin.com
- DNS ASK xm#.##nercircle.com
- '%PROGRAMDATA%\task.manager\task manager.exe'
- '%PROGRAMDATA%\task.manager\task manager.exe' ' (со скрытым окном)