Техническая информация
- %TEMP%\nsh2.tmp\InetLoad.dll
- %HOMEPATH%\Desktop\Internet Hao123.lnk
- %TEMP%\nsh2.tmp\System.dll
- %TEMP%\nsh2.tmp\Math.dll
- %TEMP%\nsh2.tmp\System.dll
- %TEMP%\nsh2.tmp\Math.dll
- %TEMP%\nsh2.tmp\InetLoad.dll
- '17#.#95.249.133':8511
- 'bi##.#antule.net':5735
- 'cv#.#antule.net':7034
- 'to####.kantule.net':9282
- DNS ASK bi##.#antule.net
- DNS ASK to####.kantule.net
- DNS ASK cv#.#antule.net
- ClassName: 'uinaysjuwoecpricb' WindowName: 'zghjienbmkmrnshrmp'
- ClassName: 'kyakapqlsrukvkedk' WindowName: 'byneqqknzrvmyymeepdplbtlogfrytzyipvyncu'
- ClassName: 'upbdaxjwzrpyntpox' WindowName: 'ltighazzeoylywxevklqhzihwcdytvbnwkvpbt'
- ClassName: 'esugjloyshtmuepzjlrgyuslvbgpvuxhcgl' WindowName: 'mayuxbjtypqpoohitijo'
- ClassName: 'rbjuqeiwmuoakbtcmwwpkkozlch' WindowName: 'hygmdzowwoatpkxnlqcipwtrltjaauqhpa'
- ClassName: 'lofgefpahjjtoztqajtl' WindowName: 'zhurgokxiowjzhhoaffrehlsgtdiy'
- ClassName: 'kfxzsyjicauovgjuiixejvzarpltys' WindowName: 'yrtqazprpxnqnivzrxmuwittwxhzdisrqj'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'piicniddsoqethvtmypdwskzlcaicjpfhjtmy' WindowName: 'teucudcsoonspctoworzivktll'
- ClassName: 'rxaopujbgfnsxkdkjlnweaibptmehqrpqdqdh' WindowName: 'metkuicwrbhrftuduyypy'
- ClassName: 'iqsmfogekywymggjukbkb' WindowName: 'huoqmwmcugaampi'