Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'msdn.exe' = '%TEMP%\msdn.exe'
- %TEMP%\msdn.exe
- %TEMP%\msdn.exe
- %TEMP%\msdn.exe
- 'ur##lo.be':80
- 'do##p.com':80
- 'ir#.##eenode.net':6667
- 'wp#d':80
- 'is.gd':80
- 'ti#y.cc':80
- ur##lo.be/62ee84c0709dee9c
- do##p.com/62ee84c0709dee9c
- ti#y.cc/62ee84c0709dee9c
- wp#d/wpad.dat
- is.gd/62ee84c0709dee9c
- DNS ASK do##p.com
- DNS ASK ir#.##eenode.net
- DNS ASK www.google.com
- DNS ASK ur##lo.be
- DNS ASK wp#d
- DNS ASK is.gd
- DNS ASK ti#y.cc
- ClassName: 'Indicator' WindowName: ''