Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\1a2df42fa8f95ef7e9e0e1225cec9455] 'Start' = '00000000'
- <SYSTEM32>\cmd.exe /c "%TEMP%\d13c40a78a71b835dd478dff32c2cfa1.bat"
- <SYSTEM32>\1a2df42fa8f95ef7e9e0e1225cec9455.sys
- C:\log.udt
- %TEMP%\d13c40a78a71b835dd478dff32c2cfa1.bat
- '20#.#52.248.34':7000