Техническая информация
- '%WINDIR%\GuaGua2010Beta2SetupGW_tg.exe'
- '%WINDIR%\GuaGua2010Beta2SetupGW_tg.exe' (загружен из сети Интернет)
- '<SYSTEM32>\taskkill.exe' /f /im ChatHall.exe
- %WINDIR%\GuaGua2010Beta2SetupGW_tg.exe
- '21#.#1.18.121':80
- 'www.ha##ilm.com':81
- 'www.ai##awd.com':80
- 'localhost':1038
- 21#.#1.18.121/1/a.asp
- www.ai##awd.com/qixi/guagua.php
- DNS ASK www.ha##ilm.com
- DNS ASK www.ai##awd.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''