Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'SysUtils' = '%WINDIR%\systems.exe'
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\f92e8b32876a04c88330c69c2ece69fa[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\f92e8b32876a04c88330c69c2ece69fa[1]
- %WINDIR%\systems.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\f92e8b32876a04c88330c69c2ece69fa[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\f92e8b32876a04c88330c69c2ece69fa[1]
- 'ra###hack.ru':80
- ra###hack.ru/f92e8b32876a04c88330c69c2ece69fa/?k=###########################################
- DNS ASK ra###hack.ru