Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'F11537D9073BEA' = '<Полный путь к вирусу>'
- <LS_APPDATA>\miw.txt
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\4[1].inf
- 'www.bp####ogados.com':80
- 'localhost':3306
- 'localhost':1035
- 'www.pa####iasacra.hu':80
- www.pa####iasacra.hu/templates/atomic/css/blueprint/src/templates/psd/4.inf
- www.bp####ogados.com/system/scaffolding/images/_notes/notify.php
- DNS ASK www.bp####ogados.com
- DNS ASK www.pa####iasacra.hu
- ClassName: 'Indicator' WindowName: ''