Техническая информация
- <SYSTEM32>\cmd.exe
- <SYSTEM32>\services.exe
- %WINDIR%\Explorer.EXE
- C:\RECYCLER\S-1-5-18\$2ebe1c2e2a38cb36436c4d1cb8c2630c\@
- C:\RECYCLER\S-1-5-18\$2ebe1c2e2a38cb36436c4d1cb8c2630c\n
- C:\RECYCLER\S-1-5-21-2052111302-484763869-725345543-1003\$2ebe1c2e2a38cb36436c4d1cb8c2630c\n
- <SYSTEM32>\wbem\Performance\WmiApRpl_new.ini
- C:\RECYCLER\S-1-5-21-2052111302-484763869-725345543-1003\$2ebe1c2e2a38cb36436c4d1cb8c2630c\@
- 'any':80
- 'j.###mind.com':80
- any/5699017-3C912481A04E584CDF231C519E1DF857/counter.img?th##########################
- j.###mind.com/app/geoip.js
- DNS ASK pz#�[>�
- DNS ASK pz#~�@
- DNS ASK pz#g�V(
- DNS ASK pz#Kp�
- DNS ASK pz#��r
- DNS ASK pz#�)(�
- DNS ASK j.###mind.com
- DNS ASK pz#(�5�
- DNS ASK pz#�p�
- DNS ASK pz#x�uo
- '19#.#24.159.26':16464
- '79.##9.186.230':16464
- '24.##2.77.27':16464
- '11#.#1.58.29':16464
- '12#.#35.185.27':16464
- '94.##6.18.232':16464
- '92.#6.71.21':16464
- '17#.#01.245.230':16464
- '37.##5.82.24':16464
- '17#.#1.166.21':16464
- '31.##.205.39':16464
- '18#.#9.73.222':16464
- '93.##6.36.222':16464
- '89.##.246.39':16464
- '68.##.40.220':16464
- '82.##0.204.31':16464
- '18#.#.140.30':16464
- '62.##.228.33':16464
- '77.#1.59.35':16464
- '24.##0.53.34':16464
- '76.#.82.237':16464
- '76.##6.89.237':16464
- '70.#4.206.5':16464
- '1.###.202.235':16464
- '76.##0.168.6':16464
- '1.###.240.244':16464
- '11#.#66.166.248':16464
- '69.##4.181.243':16464
- '11#.#33.14.238':16464
- '12#.#69.164.238':16464
- '12#.#4.15.233':16464
- '94.##.224.17':16464
- '24.##4.242.17':16464
- '98.##2.247.17':16464
- '98.##9.215.232':16464
- '20#.#1.127.10':16464
- '69.##6.226.7':16464
- '5.##.73.235':16464
- '94.##6.115.234':16464
- '58.##1.177.17':16464