Техническая информация
- <SYSTEM32>\msiexec.exe
- 'cd####.#ervinguploadetc.com':80
- '74.##5.232.51':80
- http://www.01##t.com/uploading/id=412154913&u=4WaevjA+sJYdbjrHmxr6tWGne9AsnDdqTnvRmxTZacviRtnYIg2xc6QMAWYaZM4RqxalcusDRHEPVzvteuj1zQ== via cd####.#ervinguploadetc.com
- http://www.google.com/ via 74.##5.232.51
- DNS ASK cd####.#ervinguploadetc.com
- DNS ASK www.google.com
- '<SYSTEM32>\msiexec.exe'