Техническая информация
- <SYSTEM32>\rundll32.exe <SYSTEM32>\shimgvw.dll,ImageView_Fullscreen %PROGRAM_FILES%\Cqjgo\206250.jpg
- %PROGRAM_FILES%\Cqjgo\4399Panel.exe
- C:\log.txt
- C:\247671.lnk
- %PROGRAM_FILES%\Cqjgo\brun.dll
- %PROGRAM_FILES%\Cqjgo\215859.xml
- %PROGRAM_FILES%\Cqjgo\nss3.dll
- %PROGRAM_FILES%\Cqjgo\206250.jpg
- %HOMEPATH%\Recent\Cqjgo.lnk
- %HOMEPATH%\Recent\206250.lnk
- C:\247671.lnk в killmdx
- из <Полный путь к вирусу> в C:\226890.log
- '20#.#2.206.79':6777
- '20#.#2.206.95':6777
- '20#.#2.206.92':6777
- '11#.#03.215.153':9506
- '20#.#2.206.81':6777
- '20#.#2.206.91':6777
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'ShImgVw:CPreviewWnd' WindowName: ''