Техническая информация
- <SYSTEM32>\cmd.exe /c "%TEMP%\$kmu87ytg.bat"
- ClassName: 'AVP.Tray' WindowName: ''
- %TEMP%\$kmu87ytg.bat
- C:\x2.hiv
- %TEMP%\<Имя вируса>hj.dll
- C:\x1.hiv
- %TEMP%\<Имя вируса>hj.dll
- C:\x2.hiv
- C:\x1.hiv
- 'ht###.localdomain':80
- ht###.localdomain//go.cry8.com/images/jh.gif
- DNS ASK ht###.localdomain
- DNS ASK go.##zoo.com
- ClassName: 'Q360SafeMonClass' WindowName: ''
- ClassName: 'KVXP_Monitor' WindowName: ''