Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\6to4] 'Start' = '00000002'
- %WINDIR%\Temp\svchost.exe 1124
- %WINDIR%\regedit.exe
- %WINDIR%\Temp\svchost.exe
- %WINDIR%\Offline Web Pages\cache.txt
- <SYSTEM32>\Sens32.dll
- %WINDIR%\clb.dll
- %WINDIR%\Temp\ntshrui.dll
- %WINDIR%\Offline Web Pages\cache.txt
- %WINDIR%\clb.dll
- %WINDIR%\Temp\ntshrui.dll
- '74.##5.232.51':80
- 'ts#####t.localdomain':80
- 'ts#####t.localdomain':445
- DNS ASK sc.##rmt.net
- DNS ASK fc#.#frmt.net
- DNS ASK dh#.#frmt.net
- DNS ASK ts#####t.localdomain
- DNS ASK www.google.com
- ClassName: 'Q360SafeMainClass' WindowName: ''
- ClassName: 'RegEdit_RegEdit' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: 'Run'