Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'InetChk' = '%TEMP%\ms1336865508.exe work'
- %TEMP%\ms1336865508.exe work
- %TEMP%\uninst0018f3b.bat
- %TEMP%\ms1336865508.exe
- DNS ASK my##ace.com
- DNS ASK wi###edia.org
- DNS ASK yo##ube.com
- DNS ASK google.com
- DNS ASK ya##o.com
- ClassName: 'Indicator' WindowName: ''