Техническая информация
- <SYSTEM32>\drwtsn32.exe
- %TEMP%\nsv2.tmp\InetLoad.dll
- %TEMP%\nsv2.tmp\Math.dll
- %TEMP%\nsv2.tmp\System.dll
- %TEMP%\nsv2.tmp\System.dll
- %TEMP%\nsv2.tmp\Math.dll
- %TEMP%\nsv2.tmp\InetLoad.dll
- 'cv#.#antule.net':7034
- DNS ASK to####.kantule.net
- DNS ASK cv#.#antule.net
- ClassName: 'iaupdfpxillnxxmskksjzxv' WindowName: 'twmaayynwmndyxdxdehmryopejfrh'
- ClassName: 'hksemlowiekkads' WindowName: 'pyzwkjvsalrobukv'
- ClassName: 'fesjzowcmqpfokheqbueiy' WindowName: 'hmfouehtkvkxntyxxqrnfunewh'
- ClassName: 'wsdatlswjylltfulglvlwfmeyxgjerrx' WindowName: 'loqvzljqxihxsddsbpjsavalqogqamqgyoqoylj'
- ClassName: 'ptocsijwlisrlsu' WindowName: 'cnjzgjtknuurmfedfpufyvtn'
- ClassName: 'tpdtrxuodtkciyglirheqysz' WindowName: 'azbdkpzxawclaowbjjavlbzm'
- ClassName: 'fpgvjijbahbcpwne' WindowName: 'navvlaoyimkjqqbeie'
- ClassName: 'vmywtatgwzfmyjmrmkimrwjdzjngbch' WindowName: 'xnnvyvqrxrprodjkgsxafqskjakyll'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'sdgpmzxuhypispmfewzhanoye' WindowName: 'ymfaziqfagwwrhhhshxtbn'
- ClassName: 'xvovoyqzbvsnhiwxoi' WindowName: 'dmtbaoddlawxjxqutrklnztvzsasyk'