Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\SSHNAS\Parameters] 'ServiceDll' = '<SYSTEM32>\sshnas21.dll'
- [<HKLM>\SYSTEM\ControlSet001\Services\SSHNAS] 'ImagePath' = '<SYSTEM32>\svchost.exe -k netsvcs'
- [<HKLM>\SYSTEM\ControlSet001\Services\SSHNAS] 'Start' = '00000002'
- '<SYSTEM32>\rundll32.exe' <SYSTEM32>\sshnas21.dll,GetHandle
- opera.exe
- safari.exe
- iexplore.exe
- firefox.exe
- <SYSTEM32>\sshnas21.dll
- DNS ASK sa###a.ne.jp
- DNS ASK gr##pon.com
- DNS ASK li###ithin.com
- DNS ASK lz##.com
- DNS ASK we###fargo.com
- DNS ASK ea###oney.com