Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\HvEUKSwu] 'Start' = '00000002'
- <SYSTEM32>\vipxie.exe
- <SYSTEM32>\vipxie.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\002[1].swf
- %TEMP%\F002.exe
- %TEMP%\CFОчОчёЁЦъ(РВФцИҐіэОдЖчЦШБї+НкГАДЈ·ВѕИКАЦч)03-16SP2.exe
- %TEMP%\F002.exe
- 'www.xx##8.com':80
- 'any':6666
- 'www.xk##.com':80
- '12####8.3322.org':6666
- 'localhost':1041
- www.xx##8.com/gx.txt
- www.xk##.com/fd/002.swf
- DNS ASK www.xx##8.com
- DNS ASK www.xk##.com
- DNS ASK 12####8.3322.org
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''