Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'BDX_2011_SP11_93630B14' = '%WINDIR%\BDX\Ser2011.exe'
- %WINDIR%\BDX\Ser2011.exe
- <SYSTEM32>\alg.exe
- %WINDIR%\BDX\Ser2011.exe
- %TEMP%\80EB2F5C
- 'ka####nia.gicp.net':1990
- 'ka####nia.3322.org':1990
- DNS ASK ka####nia.gicp.net
- DNS ASK ka####nia.3322.org