Техническая информация
- 'C:\ppstreamsetup_spl001@kb148.exe'
- 'C:\ppstreamsetup_spl001@kb148.exe' (загружен из сети Интернет)
- '%WINDIR%\explorer.exe'
- C:\ppstreamsetup_spl001@kb148.exe
- <Текущая директория>\<Имя вируса>.txt
- 'do#####d.ppstream.com':80
- do#####d.ppstream.com/hz/ppstreamsetup_spl001@kb148.exe
- DNS ASK do#####d.ppstream.com
- ClassName: 'SystemTray_Main' WindowName: '(null)'
- ClassName: 'CSCHiddenWindow' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'Proxy Desktop' WindowName: '(null)'
- ClassName: 'BaseBar' WindowName: 'ChanApp'
- ClassName: 'SysListView32' WindowName: '(null)'