Техническая информация
- %TEMP%\~nsu.tmp\Au_.exe _?=<Текущая директория>\
- <SYSTEM32>\taskkill.exe /F /im Update.exe
- <SYSTEM32>\taskkill.exe /F /im DDGuo.exe
- <SYSTEM32>\taskkill.exe /F /im
- %TEMP%\nsr5.tmp\tg.dll
- %TEMP%\nsr5.tmp\services.dll
- %TEMP%\nsl4.tmp
- %TEMP%\nsc2.tmp
- %TEMP%\~nsu.tmp\Au_.exe
- DNS ASK TO####.DOUDOUGUO.net
- 'to####.doudouguo.net':8711
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''