Техническая информация
- %WINDIR%\explorer.exe
- %TEMP%\a2d3.tmp
- %TEMP%\a370.tmp
- %TEMP%\a3bf.tmp
- %TEMP%\a4e9.tmp
- %TEMP%\a69b.tmp
- %TEMP%\a7c4.tmp
- %TEMP%\a8af.tmp
- %TEMP%\a2d3.tmp
- %TEMP%\a370.tmp
- %TEMP%\a3bf.tmp
- %TEMP%\a69b.tmp
- %TEMP%\a7c4.tmp
- %TEMP%\a8af.tmp
- '62.#22.72.2':8888
- 'an##las.in':80
- http://an##las.in/task.php?id############################################
- DNS ASK no###d32.com
- DNS ASK an##las.in
- '%WINDIR%\syswow64\svchost.exe' -k netsvcs