Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'wmpnetwrk.exe' = '%APPDATA%\wmpnetwrk.exe'
- %APPDATA%\wmpnetwrk.exe
- %TEMP%\ws2_32.lib
- <Текущая директория>\libeay32.dll
- %APPDATA%\wmpnetwrk.exe
- 'ti#y.cc':80
- ti#y.cc/4fb418d4
- DNS ASK ti#y.cc
- DNS ASK ti###b.nist.gov
- 'ti###b.nist.gov':123
- 'localhost':1036
- ClassName: 'Indicator' WindowName: ''