Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'adsl' = '<SYSTEM32>\svclost.exe'
- '<SYSTEM32>\svclost.exe'
- <SYSTEM32>\svclost.exe
- <SYSTEM32>\superec6Pqcg.sys
- <SYSTEM32>\superec6Pqcg.sys
- 'www.75##.com':80
- '12#.#25.114.144':80
- www.75##.com/ip.htm
- 12#.#25.114.144/special/time/
- DNS ASK www.75##.com
- DNS ASK op##.baidu.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'