Техническая информация
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] 'AppRta2d7' = '%LOCALAPPDATA%\AppRta2d7\apprta2d7.exe'
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] 'AppSvca2d7' = '%LOCALAPPDATA%\Programs\a2d7\svca2d7.exe'
- nul
- %LOCALAPPDATA%\apprta2d7\apprta2d7.exe
- %LOCALAPPDATA%\programs\a2d7\svca2d7.exe
- '20#.#94.54.131':6543
- '%LOCALAPPDATA%\apprta2d7\apprta2d7.exe'
- '%LOCALAPPDATA%\programs\a2d7\svca2d7.exe'
- '%LOCALAPPDATA%\apprta2d7\apprta2d7.exe' (со скрытым окном)
- '%LOCALAPPDATA%\programs\a2d7\svca2d7.exe' (со скрытым окном)