Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '' = ''
- %PROGRAM_FILES%\%Program Files%\laass.exe Wdcp.dll main
- <SYSTEM32>\cmd.exe /c ""%PROGRAM_FILES%\%Program Files%\Cest.bat" "
- <SYSTEM32>\wscript.exe "%PROGRAM_FILES%\%Program Files%\363.VBS"
- %PROGRAM_FILES%\%Program Files%\Cest.bat
- %PROGRAM_FILES%\%Program Files%\SCR.SCR
- %PROGRAM_FILES%\%Program Files%\Wdcp.dll
- %PROGRAM_FILES%\%Program Files%\363.VBS
- %WINDIR%\best.bat
- %WINDIR%\362.vbs
- %PROGRAM_FILES%\%Program Files%\laass.exe
- 'yy####k.9966.org':2011
- DNS ASK yy####k.9966.org
- ClassName: 'Shell_TrayWnd' WindowName: ''