Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Window' = '%WINDIR%\Temp\tasdmgr.exe'
- <SYSTEM32>\cmd.exe /c ""%WINDIR%\Temp\gozz.bat" "
- %WINDIR%\Temp\infozz.txt
- %WINDIR%\Temp\tasdmgr.exe
- %WINDIR%\Temp\gozz.bat
- '93.##8.134.11':25
- DNS ASK sm##.yandex.ru
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Indicator' WindowName: ''