Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\HTTPSFilter] 'Start' = '00000002'
- <SYSTEM32>\ping.exe 127.0.0.1 -n 1
- <SYSTEM32>\attrib.exe +s +h <SYSTEM32>\h6to4.dll
- <SYSTEM32>\cmd.exe /c systemddr.bat
- <SYSTEM32>\expand.exe -r <SYSTEM32>\_Blank.bmp <SYSTEM32>
- <SYSTEM32>\svchost.exe -k LocalServiceEncry
- <Текущая директория>\systemddr.bat
- <SYSTEM32>\h6to4.dll
- <SYSTEM32>\_Blank.bmp
- <SYSTEM32>\h6to4.dll
- <SYSTEM32>\_Blank.bmp
- 'te##.##refoxupdata.com':443
- 'te##.#sapappers.com':443
- DNS ASK te##.##refoxupdata.com
- DNS ASK te##.#sapappers.com