Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'dllhost' = '<Полный путь к вирусу>'
- <SYSTEM32>\CRNJEUFU88E6680F.IFCT
- 'ft#.###bers.lycos.co.uk':21
- DNS ASK ft#.###bers.lycos.co.uk
- ClassName: 'NDDEAgnt' WindowName: 'NetDDE Agent'
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''