Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'services' = '%WINDIR%NT\Services\sеrvices.exe'
- %WINDIR%NT\Services\sеrvices.exe
- %WINDIR%NT\Services\reg.exe %WINDIR%NT\Services\sеrvices.exe
- <SYSTEM32>\cacls.exe %WINDIR%NT /P Все:N
- <SYSTEM32>\cacls.exe C:\ /P Все:F
- %WINDIR%NT\Services\sеrvices.ver
- %WINDIR%NT\Services\name.dat
- %WINDIR%NT\Services\reg.exe
- %WINDIR%NT\Services\sеrvices.exe
- 'wi####ing.ucoz.ru':21
- 'wi####ing.ucoz.ru':80
- wi####ing.ucoz.ru/system.ver
- DNS ASK wi####ing.ucoz.ru
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Indicator' WindowName: ''