Техническая информация
- ClassName: 'OLLYDBG' WindowName: ''
- <Полный путь к вирусу>
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\zcx1[1].txt
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\dcc[1].txt
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\zcx1[1].txt
- '<IP-адрес в локальной сети>':445
- 'tk#######.image-facebook.info':80
- 'mk#######.image-facebook.info':80
- tk#######.image-facebook.info/dbg/nfo/zcx1.txt
- mk#######.image-facebook.info/root/dcc.txt
- DNS ASK tk#######.image-facebook.info
- DNS ASK mk#######.image-facebook.info
- ClassName: 'WispWindowClass' WindowName: ''