Техническая информация
- '%TEMP%\BIOLqMB\<Имя файла>.exe' 2
- %WINDIR%\DkNNtdV.dll
- %WINDIR%\tfnkNNcF\DlFGeyP.dll
- %WINDIR%\tfnkNNcF\CdEQesYf.dll
- %WINDIR%\uPRaTMx.dll
- %TEMP%\BIOLqMB\<Имя файла>.exe
- %WINDIR%\CLOG.txt
- %WINDIR%\DkNNtdV.dll
- %WINDIR%\uPRaTMx.dll
- 'www.go##0.com':80
- 'cn##.58ad.cn':80
- 'www.58##y.com':80
- http://www.go##0.com/d2/CDClient.dll
- http://cn##.58ad.cn/index/getcfg?id##
- http://www.58##y.com/index/getcfg?id##
- DNS ASK www.go##0.com
- DNS ASK cn##.58ad.cn
- DNS ASK www.58##y.com