Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{3D278B2B-FCBC-DBD6-2CAE-CDE0DE3A238C}] 'stubpath' = ''
- %WINDIR%\Explorer.EXE
- %PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE
- <SYSTEM32>\Bifrost\facebookhack
- 'localhost':81
- 'ha#####ack.no-ip.org':81
- DNS ASK ha#####ack.no-ip.org