Техническая информация
- %APPDATA%\microsoft\speech\files\userlexicons\sp_1e048464da3a425fbaab39814275d50b.dat
- 'an####ymorganti.com':80
- 'an####ymorganti.com':443
- http://www.an####ymorganti.com/wp-content/uploads/2016/01/One-Cool-Cat-620x413.jpg
- 'an####ymorganti.com':443
- DNS ASK an####ymorganti.com
- ClassName: 'Static' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- '<SYSTEM32>\cmd.exe' /c rd/s/q C:\' (со скрытым окном)
- '%ProgramFiles%\internet explorer\iexplore.exe' -Embedding
- '<SYSTEM32>\cmd.exe' /c rd/s/q C:\