Техническая информация
- [<HKLM>\SYSTEM\CurrentControlSet\Services\Driver] 'ImagePath' = 'c:\Driver.sys'
- [<HKLM>\System\CurrentControlSet\Services\Z2T34IQ4E22A] 'ImagePath' = '%TEMP%\Z2T34IQ4E22A.dat'
- 'Driver' c:\Driver.sys
- 'Z2T34IQ4E22A' %TEMP%\\Z2T34IQ4E22A.dat
- 'Z2T34IQ4E22A' %TEMP%\Z2T34IQ4E22A.dat
- C:\adriver.dll
- C:\driver.sys
- %TEMP%\z2t34iq4e22a.dat
- %WINDIR%\temp\udd9c9f.tmp
- %TEMP%\z2t34iq4e22a.dat
- %WINDIR%\temp\udd9c9f.tmp
- 'localhost':4300
- http://www.pf##j.cn/3.txt
- DNS ASK pf##j.cn
- DNS ASK sh###.weiyun.com
- DNS ASK lo######t.ptlogin2.qq.com