Техническая информация
- [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '{AB1F3E47-AEF1-400E-A108-233A046C3A34}' = '%ALLUSERSPROFILE%\Oracle\java.exe'
- <SYSTEM32>\svchost.exe
- %WINDIR%\explorer.exe
- %ALLUSERSPROFILE%\oracle\java.exe
- %TEMP%\{44922e45-3dff-4aa6-8699-496282548bd8}
- %TEMP%\{44922e45-3dff-4aa6-8699-496282548bd8}
- %TEMP%\{44922e45-3dff-4aa6-8699-496282548bd8}
- '45.##.168.128':23201
- '<SYSTEM32>\svchost.exe'
- '%WINDIR%\explorer.exe'