Техническая информация
- '%TEMP%\ad_2293.exe'
- '%TEMP%\dodolook349.exe'
- '%TEMP%\11d005.exe'
- '%TEMP%\boolan82.exe'
- %TEMP%\nsw6.tmp
- <SYSTEM32>\67-105-7163
- %TEMP%\nsx8.tmp
- %WINDIR%\4.tmp
- %TEMP%\nsc9.tmp\System.dll
- %TEMP%\11d005.exe
- %TEMP%\nsh2.tmp
- %TEMP%\boolan82.exe
- %TEMP%\dodolook349.exe
- %TEMP%\ad_2293.exe
- %WINDIR%\4.tmp
- %TEMP%\nsc9.tmp\System.dll
- '88#.#43call.cn':80
- 88#.#43call.cn/pw.ini
- DNS ASK 88#.#43call.cn