Техническая информация
- %TEMP%\nsi2.tmp\InetLoad.dll
- %HOMEPATH%\Desktop\Internet Hao123.lnk
- %TEMP%\nsi2.tmp\System.dll
- %TEMP%\nsi2.tmp\Math.dll
- %TEMP%\nsi2.tmp\System.dll
- %TEMP%\nsi2.tmp\Math.dll
- %TEMP%\nsi2.tmp\InetLoad.dll
- '17#.#95.249.133':8511
- 'to####.kantule.net':9282
- 'cv#.#antule.net':7034
- DNS ASK bi##.#antule.net
- DNS ASK to####.kantule.net
- DNS ASK cv#.#antule.net
- ClassName: 'xmtlqivxgtdflayvzjjrssfai' WindowName: 'retktetbeyhwtrnuljcexoauanpewlxxsscemrc'
- ClassName: 'mfmnzaefxsdlsbrztw' WindowName: 'yaaignstmziumacfqibvuiornxjfvbajk'
- ClassName: 'oecbnehxiaoypcwepqhvigbljqgqekaaeibbeu' WindowName: 'pcxmvjisndmgrbeostkcswfbefmdhvneyoiqu'
- ClassName: 'uzedqinwtclzouycqegow' WindowName: 'ctqifiugshahowxwsdjr'
- ClassName: 'hjvaqrxvysopyngbcu' WindowName: 'encennywuhcnakmgcqzpetko'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'izbpygzljadlhdfaeqdt' WindowName: 'buwqfgbhlnbjqzsiipdlahwi'
- ClassName: 'ocqayrzvqxhcdvqpr' WindowName: 'jqifdbrnpatambjuxjx'
- ClassName: 'rrlnxpcsgerkycdwuf' WindowName: 'huiqmgvtewaosgtroaczjwgkbfffhu'