Техническая информация
- "%TEMP%\drpdndls.exe" (загружен из сети Интернет)
- %TEMP%\nsr7.tmp\System.dll
- %TEMP%\nsr7.tmp\Math.dll
- %TEMP%\nsy2.tmp\zsilent.exe
- %TEMP%\nsw6.tmp
- %TEMP%\nsr7.tmp\NSISdl.dll
- %TEMP%\nsr7.tmp\NSISdl_temp.zugo
- %TEMP%\nsr7.tmp\md5dll.dll
- %TEMP%\nsr7.tmp\GetVersion.dll
- %TEMP%\nsy2.tmp\ext2p.exe
- %TEMP%\nsm4.tmp\System.dll
- %TEMP%\nsy2.tmp\NSISdl.dll
- %TEMP%\nsy2.tmp\getCountry
- %TEMP%\drpdndls.exe
- %TEMP%\nsy2.tmp\System.dll
- %TEMP%\nsm4.tmp\NSISdl.dll
- %TEMP%\nsm4.tmp\regb
- %TEMP%\nsm4.tmp\regb
- %TEMP%\nsm4.tmp\System.dll
- %TEMP%\drpdndls.exe
- %TEMP%\nsm4.tmp\NSISdl.dll
- 'www.xy###tats.com':80
- 'www.in####t-find.com':80
- 'tr###.zugo.com':80
- www.xy###tats.com/dl/zbr091.exe
- www.in####t-find.com/regdt/{ED993E22-8DB8-4CC9-AB8E-619C0F97E9C6}|0|1091
- tr###.zugo.com/getCountry/
- DNS ASK www.xy###tats.com
- DNS ASK www.in####t-find.com
- DNS ASK tr###.zugo.com