Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'System32' = '%APPDATA%\System32.exe'
- %APPDATA%\system32.exe
- %LOCALAPPDATA%\microsoft\windows\history\history.ie5\mshist012020032120200322\index.dat
- http://fi####ightnow.com/file/0QE877
- http://www.fu##her.com/
- http://www.fu##her.com/favicon.ico
- DNS ASK fi####ightnow.com
- DNS ASK ww#.###esrightnow.com
- DNS ASK fu##her.com
- ClassName: 'DDEMLMom' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- ClassName: 'Static' WindowName: ''
- '%APPDATA%\system32.exe'