Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '360sd' = '%TEMP%\360sd.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Internet Explorer' = '%TEMP%\Internet Explorer.exe'
- %TEMP%\360sd.exe
- %TEMP%\Internet Explorer.exe
- <SYSTEM32>\ipconfig.exe /all
- %TEMP%\360sd.exe
- %TEMP%\Internet Explorer.exe
- '26####2.it98.org':80
- '26####.jy298.com':80
- DNS ASK 26####2.it98.org
- DNS ASK 26####.jy298.com
- ClassName: 'Indicator' WindowName: ''