Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{FA825683-DD62-4414-F22A-60E2A961A825}] 'stubpath' = ''
- Idle
- <Полный путь к вирусу>
- <SYSTEM32>\Bifr\test.exe
- %APPDATA%\addons.dat
- 'dr#.#apto.org':4444
- DNS ASK dr#.#apto.org
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: 'Network event'