Technical Information
- '<SYSTEM32>\svchost.exe'
- <SYSTEM32>\svchost.exe
- %TEMP%\wmsotlx\CuDorxw.dll
- <SYSTEM32>\C30A9.dat
- <SYSTEM32>\C30A9.txt
- <SYSTEM32>\ЕдЦГ.txt
- <Auxiliary element>
- <SYSTEM32>\CDCLOG.txt
- <SYSTEM32>\C30A9.dat
- 'localhost':1040
- '58#d.cn':80
- 'www.58#d.cn':80
- http://58#d.cn/api/get?id######
- http://www.58#d.cn/api/get?id######
- DNS ASK www.go##0.com
- DNS ASK 58#d.cn
- DNS ASK www.58#d.cn
- ClassName: 'SysListView32' WindowName: 'FolderView'
- ClassName: 'SHELLDLL_DefView' WindowName: ''
- ClassName: 'Progman' WindowName: 'Program Manager'