Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{DE22F2AB-FBD2-48F2-3AE7-4784545633E6}] 'stubpath' = ''
- '%TEMP%\c.exe'
- '%TEMP%\<Имя вируса>.exe'
- '%WINDIR%\explorer.exe'
- %WINDIR%\explorer.exe
- %PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE
- %PROGRAM_FILES%\NetMeeting\cb33.exe
- %TEMP%\c.exe
- %TEMP%\<Имя вируса>.exe
- %PROGRAM_FILES%\NetMeeting\cb33.exe
- %TEMP%\c.exe
- '61.##2.30.226':443
- 'pa####ine.3-a.net':443
- 'go#####me.serveuser.com':443
- DNS ASK pa####ine.3-a.net
- DNS ASK go#####me.serveuser.com