Техническая информация
- %TEMP%\tabse.hqeqnzjurcqh
- %TEMP%\zhxgrajz.txt
- http://ad#.#ensa.at/api1/2XQtItK3Eld1h/RjL8OElN/FhjFoxGRwNphcC2vEGPOyBP/qXHxEzABpz/vQb_2Br89TudqzKSk/4BcOKzBriqDD/b8qWbFVH5pg/pBzE0bzh_2BqNZ/DNtwD3qQmanks1DHSNs7c/naNtnTQMHObzUxnV/yV_2FewH9mO0_...
- DNS ASK ad#.#ensa.at
- ClassName: 'Static' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- '<SYSTEM32>\regsvr32.exe' -s %TEMP%\\ZHxGraJZ.txt