Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\5pGiUNlX6YBgroW.lnk
- %ProgramFiles%\sdSOJSI3iWkDenV.exe
- 'bm###onj.bid':80
- 'wv###pte.click':80
- 'localhost':1036
- http://bm###onj.bid/css/main.php?g=############################
- http://wv###pte.click/css/main.php?g=############################
- DNS ASK bm###onj.bid
- DNS ASK wv###pte.click
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''