Техническая информация
- <SYSTEM32>\svchost.exe
- C:\dmss
- C:\jb.ini
- C:\jcss
- C:\dm\11.dll
- C:\ZCPZ.DLL
- C:\dmss
- C:\jcss
- '10#.#5.194.121':80
- '12#.#25.114.144':80
- http://10#.#5.194.121/dm/11.dll
- http://www.ba##u.com/ via 12#.#25.114.144
- DNS ASK www.ba##u.com
- ClassName: 'DiDaSG' WindowName: ''
- ClassName: 'DiDaGrid' WindowName: ''
- ClassName: 'DiDaViewCtrl' WindowName: ''
- ClassName: '' WindowName: 'GINA Logon'
- ClassName: '' WindowName: ''
- '<SYSTEM32>\svchost.exe'