Техническая информация
- %TEMP%\nsq2.tmp\InetLoad.dll
- %HOMEPATH%\Desktop\Internet Hao123.lnk
- %TEMP%\nsq2.tmp\System.dll
- %TEMP%\nsq2.tmp\Math.dll
- %TEMP%\nsq2.tmp\System.dll
- %TEMP%\nsq2.tmp\Math.dll
- %TEMP%\nsq2.tmp\InetLoad.dll
- '17#.#95.249.133':8511
- 'bi##.#antule.net':5735
- 'cv#.#antule.net':7034
- 'to####.kantule.net':9282
- DNS ASK bi##.#antule.net
- DNS ASK to####.kantule.net
- DNS ASK cv#.#antule.net
- ClassName: 'jvkiozbvbuscjhyqcnmhybfxihuusxokmnlf' WindowName: 'tyqkpprwjfammzdlsfthtedfyudplgifwrozd'
- ClassName: 'kpyrpdyjfyhrmqd' WindowName: 'ngpvvqteejdwuydaqdeikxchgzjsnyuzqufupzf'
- ClassName: 'oomwfnluunrxecqtntstxzxrbtodhmcmdpovdph' WindowName: 'mwzdiypabvvpdtsqrzcaihsbnsdrtpthvo'
- ClassName: 'leqdxulcxtxubui' WindowName: 'rzykdgelgfzhsnntkyfljqhtl'
- ClassName: 'cywwiksdmelpqryljkibxtllxq' WindowName: 'uieegzfhnmpzwnqfrrrcxuuzknbolkdxdzib'
- ClassName: 'wuynmrydejviveeugunlhyyjhd' WindowName: 'bicrdocbzrfqgdjna'
- ClassName: 'donjggoxdtlhxmqkmgnaokieuseaeurhskfhpbp' WindowName: 'hattfkjhwqkvrexox'
- ClassName: 'fforwddrezebhrqkglqrojsdkbowaytdysexfxx' WindowName: 'scwmovsrmilsvwuahamqje'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'