Техническая информация
- %TEMP%\rarsfx0\windows\time\mian.dll
- %TEMP%\rarsfx0\urseiklmn.exe
- %TEMP%\rarsfx0\urseiklmn.exe
- %TEMP%\rarsfx0\windows\time\mian.dll
- 'dl.##ubak.com':80
- '61.##6.40.231':81
- http://dl.##ubak.com/msn/software/partner/mfq/haoya.exe
- DNS ASK gt####cd.3322.org
- DNS ASK d1.##wnxia.net
- DNS ASK dl.##ubak.com
- ClassName: 'EDIT' WindowName: ''
- '%TEMP%\rarsfx0\urseiklmn.exe' "http://gtszylcd.3322.org:8181/shenge.exe"
- '%TEMP%\rarsfx0\urseiklmn.exe' "http://d1.downxia.net/downloader/setup3002.exe"
- '%TEMP%\rarsfx0\urseiklmn.exe' "http://dl.youbak.com/msn/software/partner/mfq/haoya.exe"
- '%TEMP%\rarsfx0\urseiklmn.exe' "http://61.##6.40.231:81/soft/OemWpsSetup40.6.exe"