Техническая информация
- '%ALLUSERSPROFILE%\Application Data\gKjxmnvb\b62ef49.exe'
- %WINDIR%\CLOG.txt
- %WINDIR%\XfDLyfu\uUIiRUdu.dll
- %WINDIR%\XfDLyfu\wDsONr.dll
- %WINDIR%\wXUekRp.dll
- %ALLUSERSPROFILE%\Application Data\gKjxmnvb\b62ef49.exe
- %WINDIR%\lMgIOm.dll
- %WINDIR%\lMgIOm.dll
- %WINDIR%\wXUekRp.dll
- 'www.go##0.com':80
- 'cn##.58ad.cn':80
- 'www.58##y.com':80
- http://www.go##0.com/d2/CDClient.dll
- http://cn##.58ad.cn/index/getcfg?id######
- http://www.58##y.com/index/getcfg?id######
- DNS ASK www.go##0.com
- DNS ASK cn##.58ad.cn
- DNS ASK www.58##y.com