Техническая информация
- %APPDATA%\microsoft\windows\start menu\programs\startup\bit64f9.tmp
- %WINDIR%\syswow64\nslookup.exe
- %TEMP%\nsg27db.tmp
- %TEMP%\myrtf.rtf
- %TEMP%\winds_ico.png
- %TEMP%\metoo.dll
- %TEMP%\nsg29b0.tmp\system.dll
- %ALLUSERSPROFILE%\dxwzx.bmp
- %APPDATA%\microsoft\windows\start menu\programs\startup\bit64f9.tmp
- '34.#7.14.41':80
- '%WINDIR%\syswow64\nslookup.exe'