Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\wscsvc] 'Start' = '00000002'
- <SYSTEM32>\cmd.exe
- %WINDIR%\Explorer.EXE
- C:\RECYCLER\S-1-5-21-2052111302-484763869-725345543-1003\$2ebe1c2e2a38cb36436c4d1cb8c2630c\n
- C:\RECYCLER\S-1-5-21-2052111302-484763869-725345543-1003\$2ebe1c2e2a38cb36436c4d1cb8c2630c\@
- <SYSTEM32>\wbem\Logs\wbemess.lo_
- 'localhost':80
- 'j.###mind.com':80
- fo#####-counters.com/5699145-24B8EBEDAA47374020E664A2406FB684/counter.img?th###############################
- j.###mind.com/app/geoip.js
- DNS ASK (g#5O�
- DNS ASK (g#��Ҋ
- DNS ASK (g#QF�3
- DNS ASK (g#��ĸ
- DNS ASK (g#*d�Q
- DNS ASK (g#,=�$
- DNS ASK j.###mind.com
- DNS ASK (g#����
- DNS ASK (g#뀧&