Техническая информация
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\index[1].php
- %ALLUSERSPROFILE%\Desktop\<Имя вируса>.lnk
- 'localhost':1036
- '21#.#00.211.6':80
- 21#.#00.211.6/ws/it/index.php?id####
- 21#.#00.211.6/ws/download/get_dl_data.php?id#######################
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''