Техническая информация
- [<HKCU>\SOFTWARE\Microsoft\Windows\CurrentVersion\Runonce] 'Wyou' = '%HOMEPATH%\Wyou.hta'
- %HOMEPATH%\wyou\wyousew.exe
- %HOMEPATH%\wyou.hta
- 'em#####ion2020.ddns.net':3800
- 'is.gd':443
- 'drive.google.com':443
- 'do#########ocs.googleusercontent.com':443
- DNS ASK is.gd
- DNS ASK drive.google.com
- DNS ASK do#########ocs.googleusercontent.com
- DNS ASK em#####ion2020.ddns.net
- '%ProgramFiles(x86)%\internet explorer\ieinstal.exe'