Техническая информация
- '%WINDIR%\MS-Oficerer.exe'
- '<SYSTEM32>\rundll32.exe' setupapi,InstallHinfSection DefaultInstall 128 c:\MS-Wine1.inf
- '<SYSTEM32>\cmd.exe' /c zs123.bat
- C:\MS-Wine1.inf
- <Текущая директория>\zs123.bat
- %WINDIR%\MS-Oficerer.exe
- C:\MS-Wine1.inf
- 'pl####.gnway.net':6688
- DNS ASK pl####.gnway.net
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'