Техническая информация
- '<SYSTEM32>\rundll32.exe' <SYSTEM32>\shimgvw.dll,ImageView_Fullscreen %PROGRAM_FILES%\Knjct\166250.jpg
- %PROGRAM_FILES%\Knjct\4399Panel.exe
- %HOMEPATH%\Recent\Knjct.lnk
- C:\217125.lnk
- %PROGRAM_FILES%\Knjct\brun.dll
- %PROGRAM_FILES%\Knjct\nss3.dll
- %PROGRAM_FILES%\Knjct\166250.jpg
- %HOMEPATH%\Recent\166250.lnk
- %PROGRAM_FILES%\Knjct\179000.xml
- C:\217125.lnk в killmdx
- из <Полный путь к вирусу> в C:\200890.log
- '20#.#2.206.80':3688
- '20#.#2.206.79':3688
- '20#.#2.206.93':3688
- '18#.#7.228.71':3140
- '20#.#2.206.87':3688
- '20#.#2.206.73':3688
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'ShImgVw:CPreviewWnd' WindowName: ''