Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\CONFIG.lnk
- '%APPDATA%\Microsoft\Internet Explorer\BatVoip.exe'
- '%APPDATA%\Microsoft\Internet Explorer\ACS.COM' "ACS.HTT"
- '<SYSTEM32>\svchost.exe'
- <SYSTEM32>\svchost.exe
- %APPDATA%\Microsoft\Internet Explorer\lol.vbs
- %APPDATA%\Microsoft\Internet Explorer\BatVoip.exe
- %APPDATA%\Microsoft\Internet Explorer\ACS.HTT
- %APPDATA%\Microsoft\Internet Explorer\lol.cmd
- %APPDATA%\Microsoft\Internet Explorer\ACS.COM
- %APPDATA%\Microsoft\Internet Explorer\ACS.HTT
- %APPDATA%\Microsoft\Internet Explorer\lol.vbs
- %APPDATA%\Microsoft\Internet Explorer\lol.cmd
- %APPDATA%\Microsoft\Internet Explorer\ACS.COM
- 'me####.myq-see.com':2025
- 'vo#####oxy.voip01.com':2026
- 'xc####.no-ip.org':2023
- 'cc#####.servequake.com':2024
- DNS ASK me####.myq-see.com
- DNS ASK vo#####oxy.voip01.com
- DNS ASK xc####.no-ip.org
- DNS ASK cc#####.servequake.com
- ClassName: 'msctls_updown32' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''