Техническая информация
- '<SYSTEM32>\regsvr32.exe' /s REGTOOL5.DLL
- '<SYSTEM32>\regsvr32.exe' /s C:\REGTOOL5.DLL
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\VVT[1].rar
- %WINDIR%\VVT.rar
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\REGTOOL5[1].DLL
- C:\REGTOOL5
- C:\REGTOOL5 в C:\REGTOOL5.DLL
- 'www.vi###alvisit.cn':80
- 'www.la##mx.com':80
- 'localhost':1035
- www.vi###alvisit.cn/update/VVT.rar
- www.la##mx.com/shangcheng/download/REGTOOL5.DLL
- DNS ASK www.vi###alvisit.cn
- DNS ASK www.la##mx.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'