Техническая информация
- <SYSTEM32>\rundll32.exe <SYSTEM32>\shimgvw.dll,ImageView_Fullscreen %PROGRAM_FILES%\Fgmdr\126437.jpg
- %PROGRAM_FILES%\Fgmdr\4399Panel.exe
- C:\log.txt
- C:\156828.lnk
- %PROGRAM_FILES%\Fgmdr\brun.dll
- %PROGRAM_FILES%\Fgmdr\129750.xml
- %PROGRAM_FILES%\Fgmdr\nss3.dll
- %PROGRAM_FILES%\Fgmdr\126437.jpg
- %HOMEPATH%\Recent\Fgmdr.lnk
- %HOMEPATH%\Recent\126437.lnk
- C:\156828.lnk в killmdx
- из <Полный путь к вирусу> в C:\140015.log
- '20#.#2.206.75':6777
- '20#.#2.206.82':6777
- '20#.#2.206.89':6777
- '11#.#85.192.75':7023
- '20#.#2.206.76':6777
- '20#.#2.206.86':6777
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'ShImgVw:CPreviewWnd' WindowName: ''