Техническая информация
- %TEMP%\nsg2.tmp\InetLoad.dll
- %HOMEPATH%\Desktop\Internet Hao123.lnk
- %TEMP%\nsg2.tmp\System.dll
- %TEMP%\nsg2.tmp\Math.dll
- %TEMP%\nsg2.tmp\System.dll
- %TEMP%\nsg2.tmp\Math.dll
- %TEMP%\nsg2.tmp\InetLoad.dll
- 'bi##.#antule.net':5735
- '17#.#95.249.133':8511
- 'cv#.#antule.net':7034
- DNS ASK bi##.#antule.net
- DNS ASK to####.kantule.net
- DNS ASK cv#.#antule.net
- ClassName: 'ffnmazslrzqfkedcwrxujiibkypohixzkdddfg' WindowName: 'rqenecfelbgysqzgerdvgzsuptzcenyzocrv'
- ClassName: 'ybsyzbvbxbalkcqdnrizfiawttxbmjzg' WindowName: 'lngtvktyvgzmljaaxvrh'
- ClassName: 'fnxrizjsgzzxohhkbstewrvrygnpldwbdrvnnsd' WindowName: 'yuyjkymnggmhtvtuxtemordcgjgqqrhgsjnv'
- ClassName: 'qgrjcxxprpywkyfr' WindowName: 'plpnqpwssiovpylzawdxrufhfom'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'ohglapnhbdgntlmoqnkk' WindowName: 'suhnbktllmblyhxvpfoxhtnklvpmuopqkcqfm'
- ClassName: 'rmbrdippeqcafybbtfxmleqqjjjqurypgyu' WindowName: 'rmnjxiufzjhjeecvvv'