Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\ias] 'Start' = '00000002'
- C:\RECYCLER\recyl.exe115359tem.exe
- C:\RECYCLER\recyl.exe /c regedit /s c:\recycler\recyl.exe120609cyl.txt /cc:\recycler\recyl.exe115359tem.exe
- %WINDIR%\regedit.exe /s c:\recycler\recyl.exe120609cyl.txt
- C:\RECYCLER\recyl.exe120609cyl.txt
- C:\RECYCLER\recyl.exe118218cnna.txt
- <SYSTEM32>\Iasid.dll
- <SYSTEM32>\Iasid.dll.tlb
- C:\RECYCLER\recyl.exe115359cnna.txt
- C:\RECYCLER\recyl.exe
- C:\RECYCLER\recyl.exetem.tem
- C:\RECYCLER\recyl.exe115359tem.exe
- 'fh##.3322.org':8888
- DNS ASK fh##.3322.org
- ClassName: 'RegEdit_RegEdit' WindowName: ''