Техническая информация
- [<HKCU>\Software\Microsoft\Windows NT\CurrentVersion\Windows] 'Load' = '%APPDATA%\Microsoft\Security\Java.exe'
- %WINDIR%\win32\Java.exe
- %APPDATA%\%USERNAME%log.dat
- %TEMP%\%USERNAME%7
- %TEMP%\%USERNAME%8
- %TEMP%\%USERNAME%2.txt
- %APPDATA%\aa.exe
- %APPDATA%\Microsoft\Security\Java.exe
- %WINDIR%\win32\Java.exe
- %APPDATA%\%USERNAME%log.dat
- %WINDIR%\win32\Java.exe
- %TEMP%\%USERNAME%7
- %TEMP%\%USERNAME%8
- %TEMP%\%USERNAME%2.txt
- 'mu####ya.no-ip.org':1820
- DNS ASK qu######rgentina.no-ip.org
- DNS ASK mu####ya.no-ip.org
- '<IP-адрес в локальной сети>':1035