Техническая информация
- %TEMP%\BotPixel_MagicBot.exe
- %TEMP%\BotXP_MagicBot.exe
- %TEMP%\MagicBot.exe
- [<HKCU>\Software\Paltalk]
- [<HKCU>\Software\Google\Google Talk\Accounts]
- ClassName: 'PROCMON_WINDOW_CLASS' WindowName: ''
- ClassName: 'gdkWindowToplevel' WindowName: ''
- %TEMP%\BotPixel_MagicBot.exe
- %TEMP%\BotXP_MagicBot.exe
- %TEMP%\MagicBot.exe
- 'we###ulnera.com':80
- we###ulnera.com/magicbot1.txt
- DNS ASK we###ulnera.com