Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Аdobe® Flаsh® Player Installer/Uninstaller 11.1 r103' = '<SYSTEM32>\FlashUpd.exe'
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{45128EF3-02B2-2372-66A0-5CC8DCB5162B}] 'StubPath' = '<SYSTEM32>\FlashUpd.exe'
- %WINDIR%\Explorer.EXE
- iexplore.exe
- ClassName: 'OLLYDBG' WindowName: ''
- <SYSTEM32>\FlashUpd.exe
- <Полный путь к вирусу>:{1295A8E2-BFB1C086-3A79A29E-0A67BB0A}
- %APPDATA%\Obsidium\{487AFE0F-64C26999-DF8A4BB1-655711F7}
- '31.##4.220.251':3389
- '21#.#26.192.12':3389
- '79.##8.253.203':3389
- '19#.#51.40.74':3389