Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\W32Time] 'Start' = '00000002'
- 'C:\server.exe'
- %PROGRAM_FILES%\NVIDIA\CDEntEx.Dll
- %PROGRAM_FILES%\NVIDIA\NVIDIA.OLE
- C:\server.exe
- C:\ScriptExpert.exe_0.ico
- C:\ScriptExpert.exe_0.ico
- C:\server.exe
- C:\server.exe в %TEMP%\ZE.html
- 'xq#####3270.gicp.net':6380
- DNS ASK xq#####3270.gicp.net
- ClassName: '' WindowName: 'opjkropioiasdjaieee'