Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\Explorer.lnk
- '%APPDATA%\svchost.exe'
- %APPDATA%\svchost.exe
- 'qh##cahs.ru':80
- 'qk#####dfiwqlhpae.work':80
- 'bb###otv.biz':80
- 'xn###sv.info':80
- 'rn##kayq.ru':80
- 'tb#####dujdklbdph.click':80
- '14#.#02.52.215':80
- '21#.#2.199.244':80
- 'do###lrb.click':80
- 'bc####jnwqedd.info':80
- 'kf####hxbxdyl.work':80
- http://qh##cahs.ru/apache_handler.php
- http://qk#####dfiwqlhpae.work/apache_handler.php
- http://bb###otv.biz/apache_handler.php
- http://xn###sv.info/apache_handler.php
- http://rn##kayq.ru/apache_handler.php
- http://tb#####dujdklbdph.click/apache_handler.php
- http://14#.#02.52.215/apache_handler.php
- http://21#.#2.199.244/apache_handler.php
- http://do###lrb.click/apache_handler.php
- http://bc####jnwqedd.info/apache_handler.php
- http://kf####hxbxdyl.work/apache_handler.php
- DNS ASK bb###otv.biz
- DNS ASK qh##cahs.ru
- DNS ASK xn###sv.info
- DNS ASK rn##kayq.ru
- DNS ASK qk#####dfiwqlhpae.work
- DNS ASK kf####hxbxdyl.work
- DNS ASK do###lrb.click
- DNS ASK tb#####dujdklbdph.click
- DNS ASK bc####jnwqedd.info