Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '%WINDIR%\chit.EXE' = '%WINDIR%\chit.EXE'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'C:\Users\MAZAHAKA\Desktop\chit.EXE' = '<Полный путь к вирусу>'
- %WINDIR%\chit.EXE
- 'my###i.dtn.ru':21
- DNS ASK my###i.dtn.ru
- ClassName: '(null)' WindowName: 'Hello'