Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'cleansweep.exe' = 'C:\cleansweep.exe\cleansweep.exe'
- C:\cleansweep.exe\cleansweep.exe
- <Служебный элемент>
- C:\cleansweep.exe\config.bin
- C:\cleansweep.exe\cleansweep.exe
- 'www.mi#####ft-spynet.com':80
- '21#.#55.29.144':443
- www.mi#####ft-spynet.com/software/main-admin-panelv1.0.500/gate.php?gu############################################################################################################################################################
- DNS ASK www.mi#####ft-spynet.com
- ClassName: 'Indicator' WindowName: ''