Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'UPsystem' = '%WINDIR%\svnhost.exe'
- %WINDIR%\svnhost.exe
- %TEMP%\EB8D8F.exe
- %TEMP%\DF8F8D.exe
- <SYSTEM32>\attrib.exe +h +s %WINDIR%\twunk_32.dll
- %WINDIR%\svnhost.exe
- %TEMP%\DF8F8D.exe
- %TEMP%\EB8D8F.exe
- %WINDIR%\svnhost.exe
- %TEMP%\~DF3BF7.tmp
- 'sm##.gmail.com':465
- DNS ASK sm##.gmail.com
- ClassName: 'Shell_TrayWnd' WindowName: ''