Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'MSIDLL' = 'rundll32.exe msikud32.dll,knWBwLF'
- '<SYSTEM32>\rundll32.exe' msikud32.dll,knWBwLF
- <SYSTEM32>\msikud32.dll
- 'www.al######killers47.czweb.org':80
- 'wo###.person.dk':80
- 'ma#####hotoworks.com':80
- www.al######killers47.czweb.org/admin/index.php
- wo###.person.dk/admin/index.php
- ma#####hotoworks.com/admin/index.php
- DNS ASK www.al######killers47.czweb.org
- DNS ASK wo###.person.dk
- DNS ASK ma#####hotoworks.com
- ClassName: 'MozillaUIWindowClass' WindowName: '(null)'
- ClassName: 'Chrome_WidgetWin_0' WindowName: '(null)'
- ClassName: 'IEFrame' WindowName: '(null)'
- ClassName: 'Indicator' WindowName: '(null)'