Техническая информация
- %WINDIR%\explorer.exe
- %WINDIR%\syswow64\lz_scby.txt
- %WINDIR%\faad65\3c8384fd1af01b423ae8a74ef3918f39
- %WINDIR%\faad65\bxviki4.dll
- %WINDIR%\faad65\pz0dd8t.exe
- <LS_APPDATA>\n5oe7.dat
- %WINDIR%\syswow64\lz_scby.txt
- <LS_APPDATA>\n5oe7.dat
- %WINDIR%\faad65\pz0dd8t.exe
- DNS ASK ba##u.com
- DNS ASK qq.com
- ClassName: 'Progman' WindowName: ''
- '%WINDIR%\faad65\pz0dd8t.exe' /runp2p:C:/Windows/faad65/bxVIKi4.dll