Техническая информация
- '<SYSTEM32>\svchost.exe'
- <SYSTEM32>\cscript.exe
- %WINDIR%\ijjdw.fjy
- %WINDIR%\ijjdw.fjy
- из <Полный путь к вирусу> в %TEMP%\1.tmp
- '98.##6.227.1':33816
- '18#.#1.129.155':33816
- '18#.#5.73.98':33816
- '18#.#4.217.231':33816
- '11#.#0.255.167':33816
- '19#.#2.166.103':33816
- '81.##4.96.10':33816
- '20#.#08.209.76':33816
- '19#.#24.74.150':33816
- '19#.#89.47.52':33816
- '18#.#02.4.47':33816
- '19#.#53.238.9':33816
- '85.##.208.219':33816
- '18#.#3.215.93':33816
- '14#.#13.87.27':33816
- DNS ASK ne###hnesd.ru
- DNS ASK google.com
- DNS ASK microsoft.com