Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'p4azqlfkgag' = '%HOMEPATH%\Music\p4azqlfkgag\llutuczyca1.exe'
- %WINDIR%\microsoft.net\framework\v4.0.30319\regasm.exe
- %HOMEPATH%\music\p4azqlfkgag\llutuczyca1.exe
- %APPDATA%\rcc\rcclogs.dat
- %APPDATA%\rcc\rcclogs.dat
- 'sy#####ontrol.ddns.net':45003
- 'sy#####ontrol2.ddns.net':45003
- DNS ASK sy#####ontrol.ddns.net
- DNS ASK sy#####ontrol2.ddns.net
- '%HOMEPATH%\music\p4azqlfkgag\llutuczyca1.exe'
- '%WINDIR%\microsoft.net\framework\v4.0.30319\regasm.exe'