Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'BDX_2011_SP11_FD4E5908' = '%WINDIR%\BDX\Ser2011.exe'
- %WINDIR%\BDX\Ser2011.exe
- <SYSTEM32>\alg.exe
- <SYSTEM32>\alg.exe
- %WINDIR%\BDX\Ser2011.exe
- '12#.#61.76.59':1990
- 'yi####8891.3322.org':1990
- DNS ASK yi####8891.3322.org