Техническая информация
- %APPDATA%\microsoft\windows\start menu\programs\startup\bit15fb.tmp
- %WINDIR%\syswow64\nslookup.exe
- %TEMP%\nswfb6f.tmp
- %TEMP%\myrtf.rtf
- %TEMP%\winds_ico.png
- %TEMP%\metoo.dll
- %TEMP%\nsrfcd7.tmp\system.dll
- %PROGRAMDATA%\dxwzx.bmp
- %APPDATA%\microsoft\windows\start menu\programs\startup\bit15fb.tmp
- '35.##5.208.94':77
- '%WINDIR%\syswow64\nslookup.exe'