Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'System' = '\svchost.exe'
- '%WINDIR%\svchost.exe' -read me and do something
- %WINDIR%\<Имя вируса>.exe
- %WINDIR%\<Имя вируса>.exe в %WINDIR%\svchost.exe
- 'sm##.#k.rutp????':587
- 'sm##.#k.rutpp)??':587
- 'sm##.#k.rutp??.??':587
- 'sm##.#k.rutp??':587
- 'sm##.#k.rutp|??':587
- 'sm##.#k.rutp??#??':587
- 'sm##.#k.rutpt#??':587
- 'sm##.#k.rutp ??':587
- 'sm##.#k.rutp(*??':587
- 'sm##.bk.rutp':587
- 'sm##.#k.rutp??(??':587
- 'sm##.bk.ru6':587
- 'sm##.#k.rutp0??':587
- 'sm##.bk.rutpd/??':587
- 'sm##.#k.rutp,??':587
- 'sm##.#k.rutp????':587
- 'sm##.bk.ru':587
- 'sm##.bk.rutp':587
- 'sm##.bk.ru??':587
- 'sm##.#k.rutp?????':587
- 'sm##.#k.rutp????':587
- 'sm##.#k.rutp????':587
- 'sm##.#k.rutp????':587
- 'sm##.#k.rutp$??':587
- 'sm##.#k.rutp8(??':587
- DNS ASK sm##.##.rutpњђ . .
- DNS ASK sm##.#k.rutpp)ђ
- DNS ASK sm##.##.rutpь.�
- DNS ASK sm##.#k.rutpђ
- DNS ASK sm##.#k.rutp|ђ
- DNS ASK sm##.##.rutpф#ђ . .
- DNS ASK sm##.#k.rutpt#ђ
- DNS ASK sm##.#k.rutp ђ
- DNS ASK sm##.#k.rutp(*ђ
- DNS ASK sm##.bk.rutp
- DNS ASK sm##.##.rutp¤(ђ . .
- DNS ASK sm##.bk.ru6
- DNS ASK sm##.#k.rutp0ђ
- DNS ASK sm##.bk.rutpd/ђ
- DNS ASK sm##.#k.rutp,ђ
- DNS ASK sm##.##.rutpёђ . .
- DNS ASK sm##.bk.ru
- DNS ASK sm##.bk.rutp
- DNS ASK sm##.bk.ruђ
- DNS ASK sm##.#k.rutp€ђ
- DNS ASK sm##.##.rutpдђ . .
- DNS ASK sm##.##.rutpьђ . .
- DNS ASK sm##.##.rutpдђ . .
- DNS ASK sm##.#k.rutp$ђ
- DNS ASK sm##.#k.rutp8(ђ