Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'rundll32' = 'rundll32.exe wuauclt32.dll,wininita'
- 'no#####.100webspace.net':80
- no#####.100webspace.net/infec.php
- DNS ASK no#####.100webspace.net
- ClassName: 'Shell DocObject View' WindowName: ''
- ClassName: 'TabWindowClass' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'NDDEAgnt' WindowName: 'NetDDE Agent'