Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '3721CN' = 'rundll32.exe Drive.dll Windows'
- '<SYSTEM32>\Winsocket.EXE'
- '<SYSTEM32>\cmd.exe' /c <SYSTEM32>\Win32Hlp.bat
- '<SYSTEM32>\cmd.exe' /c <SYSTEM32>\Win16Hlp.bat
- <SYSTEM32>\Win16Hlp.bat
- <SYSTEM32>\Winsocket.EXE
- <SYSTEM32>\Win32Hlp.bat
- <SYSTEM32>\Winsocket.dll
- <SYSTEM32>\drive.dll
- <SYSTEM32>\CheckDLL.dll
- <SYSTEM32>\Check.dll
- <SYSTEM32>\Check.dll
- <SYSTEM32>\CheckDLL.dll
- <SYSTEM32>\drive.dll
- <SYSTEM32>\Winsocket.dll
- '<IP-адрес в локальной сети>':1111
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'INTERNETINFORMATION' WindowName: ''