Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\QtFNhwFLDEeWZesVfeQgHE1jAMdoZk.lnk
- '<SYSTEM32>\cmd.exe' /c del <Полный путь к файлу> >> NUL
- %ProgramFiles%\u8pFPp02pZdaTdq.ini
- %ProgramFiles%\u8pFPp02pZdaTdq.exe
- 'ma###fdogplp.eu':80
- 'localhost':1036
- http://ma###fdogplp.eu/images/info.php?g=###############
- DNS ASK ma###fdogplp.eu
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''