Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{A5234316-3146-094D-168F-60DB658FBF83}] 'stubpath' = ''
- %PROGRAM_FILES%\1.exe
- %WINDIR%\Explorer.EXE
- msnmsgr.exe
- %PROGRAM_FILES%\2.jpg
- <SYSTEM32>\Bifrost\adoup.exe
- <Полный путь к вирусу>-up.txt
- %PROGRAM_FILES%\1.exe
- 'localhost':1566
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''