Техническая информация
- %WINDIR%\winhost32.exe der
- %WINDIR%\winhost32.exe
- <SYSTEM32>\cmd.exe /c ""%WINDIR%\w32_sysbm.bat" "
- %WINDIR%\Explorer.EXE
- <Полный путь к вирусу>
- %WINDIR%\winhost32.exe
- %WINDIR%\w32_systm.exe
- %WINDIR%\w32_sysbm.bat
- %WINDIR%\w32_systm.exe
- 'di####.dyndns.dk':4468
- DNS ASK di####.dyndns.dk
- ClassName: 'Shell_TrayWnd' WindowName: ''