Техническая информация
- %WINDIR%\system\czevs.exe
- %WINDIR%\NKHPDkotsLrjdoHCZjjt.exe
- <SYSTEM32>\rundll32.exe <SYSTEM32>\shimgvw.dll,ImageView_Fullscreen %WINDIR%\9iZccndoFewRkPbH8liB.jpg
- %HOMEPATH%\Recent\9iZccndoFewRkPbH8liB.lnk
- %HOMEPATH%\Recent\WINDOWS.lnk
- %WINDIR%\system\czevs.exe
- %WINDIR%\NKHPDkotsLrjdoHCZjjt.exe
- %WINDIR%\9iZccndoFewRkPbH8liB.jpg
- 'mf#.#fzz.com':80
- mf#.#fzz.com/mfp/do.asp?ev######################################################
- DNS ASK mf#.#fzz.com
- '<IP-адрес в локальной сети>':1037
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'ShImgVw:CPreviewWnd' WindowName: ''