Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'system.exe' = '%APPDATA%system.exe'
- %APPDATA%\btc-evergreen.il
- %APPDATA%\coinutil.dll
- %APPDATA%\silentm.exe
- %APPDATA%\btc.il
- %APPDATA%\usft_ext.dll
- %APPDATA%\miner.dll
- %APPDATA%system.exe
- %APPDATA%\phatk.ptx
- %APPDATA%\phatk.cl
- 'ib###dmc.org':80
- 'wp#d':80
- ib###dmc.org/mine/btc-evergreen.il
- ib###dmc.org/mine/coinutil.dll
- ib###dmc.org/mine/coin-miner2.exe
- ib###dmc.org/mine/btc.il
- ib###dmc.org/mine/usft_ext.dll
- ib###dmc.org/mine/miner.dll
- wp#d/wpad.dat
- ib###dmc.org/mine/phatk.ptx
- ib###dmc.org/mine/phatk.cl
- DNS ASK ib###dmc.org
- DNS ASK wp#d
- ClassName: 'Indicator' WindowName: '(null)'