Техническая информация
- '%TEMP%\wtgdvl.exe'
- '%TEMP%\wtgdvl.exe' (загружен из сети Интернет)
- '<SYSTEM32>\PING.EXE' 127.0.0.1 -n 2
- %TEMP%\wtgdvl.exe
- '92.##2.189.92':80
- http://92.##2.189.92/wtgdvl.exe
- DNS ASK crl.verisign.com
- DNS ASK cs######0-crl.verisign.com
- DNS ASK crl.microsoft.com
- DNS ASK ct###.#indowsupdate.com
- DNS ASK oc##.#erisign.com
- DNS ASK dn#.##ftncsi.com
- ClassName: 'Shell_TrayWnd' WindowName: ''