Техническая информация
- '<SYSTEM32>\rundll32.exe' <SYSTEM32>\shimgvw.dll,ImageView_Fullscreen %PROGRAM_FILES%\Wmske\147718.jpg
- %PROGRAM_FILES%\Wmske\4399Panel.exe
- %HOMEPATH%\Recent\Wmske.lnk
- C:\179250.lnk
- %PROGRAM_FILES%\Wmske\brun.dll
- %HOMEPATH%\Recent\147718.lnk
- %PROGRAM_FILES%\Wmske\nss3.dll
- %PROGRAM_FILES%\Wmske\147718.jpg
- C:\log.txt
- %PROGRAM_FILES%\Wmske\151062.xml
- C:\179250.lnk в killmdx
- из <Полный путь к вирусу> в C:\161640.log
- '20#.#2.206.94':3688
- '20#.#2.206.78':3688
- '20#.#2.206.84':3688
- '11#.#7.32.54':9876
- '20#.#2.206.89':3688
- '20#.#2.206.97':3688
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'ShImgVw:CPreviewWnd' WindowName: '(null)'