Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'TGEYE' = 'C:/Program Files/TG/TGEYE.exe'
- '%TEMP%\TGEYE.exe'
- '<SYSTEM32>\notepad.exe' %TEMP%\README.txt
- %TEMP%\TGEYE.exe
- %TEMP%\README.txt
- 'sm##.gmail.com':587
- DNS ASK sm##.gmail.com
- DNS ASK www.google.com
- ClassName: 'Shell_TrayWnd' WindowName: ''