Техническая информация
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Winlogon] 'Shell' = '"%APPDATA%\AAtOqz8Eo1lJ5xzP\akwlNUETmL5x.exe",explorer.exe'
- %APPDATA%\Imminent\Logs\04-01-2015
- %APPDATA%\AAtOqz8Eo1lJ5xzP\akwlNUETmL5x.exe
- %APPDATA%\AAtOqz8Eo1lJ5xzP\akwlNUETmL5x.exe
- '71.##.18.131':9003
- ClassName: 'Shell_TrayWnd' WindowName: ''