Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\gvt.exe
- '<SYSTEM32>\sc.exe' config wscsvc start= disabled
- %TEMP%\bwzbcwd
- %TEMP%\aut1.tmp
- %TEMP%\bwzbcwd
- %TEMP%\aut1.tmp
- 'ca######241.sslblindado.com':443
- DNS ASK ca######241.sslblindado.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'