Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\6to4] 'Start' = '00000002'
- <DRIVERS>\beep.sys
- <DRIVERS>\beep.sys
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\170046.bat" "
- NtDeviceIoControlFile, драйвер-обработчик: Beep.sys
- %TEMP%\170046.bat
- <SYSTEM32>\Win6to4Ex.dll
- %TEMP%\Sys78.dll
- <SYSTEM32>\Win6to4Ex.dll в <SYSTEM32>\78.log
- 'cq##.8866.org':1344
- DNS ASK cq##.8866.org