Техническая информация
- %WINDIR%\syswow64\explorer.exe
- %TEMP%\nsqaae9.tmp\system.dll
- %TEMP%\nsqaae9.tmp\findprocdll.dll
- %TEMP%\nsqaae9.tmp\inetc.dll
- %ProgramFiles(x86)%\ffdy\·åµçó°.url
- %PROGRAMDATA%\microsoft\windows\start menu\programs\·åµçó°\website.lnk
- %PROGRAMDATA%\microsoft\windows\start menu\programs\·åµçó°\uninstall.lnk
- %ProgramFiles(x86)%\ffdy\uninst.exe
- %TEMP%\nsqaae9.tmp\selfdel.dll
- %TEMP%\nsqaae9.tmp\findprocdll.dll
- %TEMP%\nsqaae9.tmp\inetc.dll
- %TEMP%\nsqaae9.tmp\selfdel.dll
- %TEMP%\nsqaae9.tmp\system.dll
- 'to####.lssen.com':443
- DNS ASK pc#####.b0.upaiyun.com
- DNS ASK un##n888.cn
- DNS ASK to####.lssen.com
- '%WINDIR%\syswow64\explorer.exe'