Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",xuuhwnpwaxtu install
- <Полный путь к вирусу>
- %TEMP%\ins1.tmp
- 'lo###od.co.be':80
- lo###od.co.be/WUxrzHlQrERTQVUAUzQDfMg3H7JaODVIZCKuk80EdWjk3+j4iksFJEUr3lDPeuiCeVOrE/sI/d/zvRyM+pk5K8P0HT+z1Ge3kXvQXg3Ocx8=
- lo###od.co.be/ElkebeMcCyL1u7Azju0/MArEhE+LXw8Axw03/Yidy8CxHecA+F9ZGOA6T9B90N/2Bnk8ucxoAU6ZHfSli2z8r/IgoMilpxOSr6+46a0HvEI3GwoOCWQJ79QDVDMxe9etgLXu93081S5uStZ6YhtxCfAXCSOhihF+hQY8dOGSoyJMxMm8gEqY1hYMCCftyc/ZVsaxwVU2
- DNS ASK lo###od.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''