Техническая информация
- %TEMP%\nsb2.tmp\InetLoad.dll
- %HOMEPATH%\Desktop\Internet Hao123.lnk
- %TEMP%\nsb2.tmp\System.dll
- %TEMP%\nsb2.tmp\Math.dll
- %TEMP%\nsb2.tmp\System.dll
- %TEMP%\nsb2.tmp\Math.dll
- %TEMP%\nsb2.tmp\InetLoad.dll
- '17#.#95.249.133':8511
- 'bi##.#antule.net':5735
- 'cv#.#antule.net':7034
- 'to####.kantule.net':9282
- DNS ASK bi##.#antule.net
- DNS ASK to####.kantule.net
- DNS ASK cv#.#antule.net
- ClassName: 'phnfwronuudthufw' WindowName: 'cwezzhcwrqyitbfv'
- ClassName: 'ptbiibkerdpxccwhtbhjzdmqwhokflwu' WindowName: 'ipnzrbthnbntgmqvgtyedanzkj'
- ClassName: 'kjtjafipstmrrltuyrnyauuss' WindowName: 'etqjyxlgywkiopbpeofbwobreivdayvhnlkl'
- ClassName: 'jeacoixizqyiqmqywqepocosbygcmttvh' WindowName: 'cruuqdcrmjeeodjg'
- ClassName: 'lfkvduongickdrv' WindowName: 'mdykyydfwqxlkdfofsornmxqnnktcwnzqk'
- ClassName: 'lelyylgdngzrkgcaywjtaobooctb' WindowName: 'lgmkhsnewkofrdaxkqwfceqenqcx'
- ClassName: 'vfvexgvxjdlkcbchoabftej' WindowName: 'okiufmihlxxvoirrcyuszrkun'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'vzrvvtyloinovdcsfvbyjh' WindowName: 'viscnlomkashwhcuicqsihutexdkr'
- ClassName: 'vszgtdadhtrbsdhpe' WindowName: 'pumslivpyxjppswz'