Техническая информация
- <SYSTEM32>\notepad.exe <Текущая директория>\<Имя вируса>.txt
- <SYSTEM32>\svchost.exe
- <SYSTEM32>\svchost.exe
- <Текущая директория>\<Имя вируса>.txt
- <LS_APPDATA>\vlbqbrkk.exe
- '91.##1.156.162':8080
- '77.##1.199.212':8080
- '68.##3.32.145':8080
- '85.##4.133.237':8080
- '18#.#35.134.199':8080
- '19#.#3.226.15':8080
- '18#.#35.132.29':8080
- '17#.#2.136.84':8080
- '68.##3.36.146':8080
- '78.##2.63.165':8089
- '87.##6.26.231':8080
- '12#.#09.2.78':8080
- '20#.#9.42.136':8080
- '20#.#2.136.27':8080
- '50.##.112.118':8080
- '18#.#35.133.70':8080
- '80.#7.6.226':8080
- '68.##3.32.146':8080
- '94.##.254.81':8080
- '50.##.127.143':8090
- ClassName: 'Shell_TrayWnd' WindowName: ''