Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'BDX_2011_SP11_27M15824' = '%WINDIR%\system\shell.com'
- %WINDIR%\system\shell.com
- <SYSTEM32>\lsass.exe
- %WINDIR%\system\shell.com
- 'rj####1.3322.org':1983
- 'rj####2.3322.org':1983
- DNS ASK rj####1.3322.org
- DNS ASK rj####2.3322.org
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Indicator' WindowName: ''