Техническая информация
- [<HKLM>\SYSTEM\ControlSet001\Services\lgjack] 'ImagePath' = '%WINDIR%\hong.sys'
- [<HKLM>\SYSTEM\ControlSet001\Services\lgjack] 'Start' = '00000001'
- '%WINDIR%\lander.exe'
- %WINDIR%\littleDll.dll
- %WINDIR%\hong.sys
- %WINDIR%\lander.exe
- %WINDIR%\hong.sys
- 'we###an.360.cn':8081
- DNS ASK 45#.#a9c.com
- DNS ASK tc.#ftx8.cn
- DNS ASK we###an.360.cn