Техническая информация
- '<SYSTEM32>\mainpro.exe'
- '<SYSTEM32>\atou.exe'
- '<SYSTEM32>\bobao.exe'
- '<SYSTEM32>\annexpro.exe'
- '<SYSTEM32>\wscript.exe' "<SYSTEM32>\1.vbs"
- <SYSTEM32>\GDIplus.tlb
- <SYSTEM32>\IeImgSnd.dll
- <SYSTEM32>\atou.exe
- <DRIVERS>\jwDrvStart.sys
- <SYSTEM32>\annexpro.exe
- <SYSTEM32>\MainproWBJ.dll
- <SYSTEM32>\mainpro.exe
- <SYSTEM32>\jwdmc.exe
- <SYSTEM32>\jwxfCC.dll
- <SYSTEM32>\zJwdmc.ini
- <SYSTEM32>\MFC42D.DLL
- <SYSTEM32>\MSINET.OCX
- <SYSTEM32>\1.vbs
- <SYSTEM32>\bobao.exe
- <SYSTEM32>\card.ini
- <SYSTEM32>\UnPack.exe
- <SYSTEM32>\XYCClient.dll
- <SYSTEM32>\UlSd.exe
- <SYSTEM32>\mswinsock.dll
- <SYSTEM32>\SYSINFO.OCX
- <SYSTEM32>\zJwdmc.ini
- <SYSTEM32>\UnPack.exe
- DNS ASK co###.dnscom.org
- DNS ASK up####.dnscom.org
- DNS ASK ur#.#nscom.org
- DNS ASK hr##.dnscom.org
- '25#.#55.255.255':36010
- '10.##5.255.255':26010
- ClassName: 'Shell Embedding' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'AnnexPro'
- ClassName: 'Progman' WindowName: 'Program Manager'
- ClassName: 'EDIT' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: '#32770' WindowName: '????????'