Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Taskhost' = '%APPDATA%\Microsoft\taskhost.exe'
- %APPDATA%\Microsoft\taskhost.exe
- %APPDATA%\Microsoft\System.log
- %APPDATA%\Microsoft\taskhost.exe
- 'ow###rasuek.com':80
- 'ze###miwj3d.com':80
- 'sl##yse.net':80
- ow###rasuek.com/704/985.html
- sl##yse.net/143/138.html
- ze###miwj3d.com/109/428.html
- sl##yse.net/571/841.html
- sl##yse.net/49/350.html
- DNS ASK ow###rasuek.com
- DNS ASK ze###miwj3d.com
- DNS ASK sl##yse.net
- ClassName: 'Indicator' WindowName: ''