Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'WordVires' = '<SYSTEM32>\cssgrew.exe'
- <SYSTEM32>\cssgrew.exe
- C:\jacob.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\new[1].gif
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\new[1].gif
- <DRIVERS>\etc\hosts
- '11#.#03.37.36':80
- '11#.#0.103.253':80
- '21#.#7.225.35':80
- 'localhost':1035
- 'ac#####stre.dnsdojo.org':80
- 11#.#03.37.36/icones/readme3.txt
- 21#.#7.225.35/manual/cristal2.txt
- ac#####stre.dnsdojo.org/images/new.gif
- 11#.#0.103.253/Sms/cert.php
- DNS ASK ac#####stre.dnsdojo.org
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Indicator' WindowName: ''