Техническая информация
- '%TEMP%\lortosad.exe'
- '<SYSTEM32>\conhost.exe' /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}
- %TEMP%\lortosad.exe
- %TEMP%\Logo351.txt
- '21#.#45.211.242':443
- '95.##3.132.118':443
- '95.##3.131.73':443
- '19#.#46.118.46':443
- '94.##7.129.182':443
- '19#.#28.203.19':443
- '92.#8.41.38':443
- '10#.#5.154.46':443
- '81.##.164.134':443
- '95.##3.130.63':443
- '95.##3.141.50':443
- '95.##3.134.103':443
- DNS ASK dn#.##ftncsi.com
- DNS ASK ic###azip.com
- ClassName: 'Shell_TrayWnd' WindowName: ''