Техническая информация
- %TEMP%\~nsu.tmp\Au_.exe _?=<Текущая директория>\
- <SYSTEM32>\taskkill.exe /F /im
- <SYSTEM32>\taskkill.exe /F /im chengziie.exe
- %TEMP%\nsq5.tmp\ukb.dll
- %TEMP%\nsq5.tmp\uub.dll
- %TEMP%\nsq5.tmp\services.dll
- %TEMP%\nsj2.tmp
- %TEMP%\~nsu.tmp\Au_.exe
- %TEMP%\nsv4.tmp
- DNS ASK to####.chengziie.com
- 'to####.chengziie.com':8731
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''