Техническая информация
- '' (загружен из сети Интернет)
- C:\-1998166001
- C:\pvrmw.exe
- C:\hvsv.exe
- C:\vatr.exe
- C:\ixrpcmeh.exe
- C:\uefrsbjo.exe
- C:\gcqwav.exe
- C:\kuiluxt.exe
- <Полный путь к файлу>
- 'cc###pbsdg.com':80
- http://cc###pbsdg.com/progs/jokkl/eoooocccpd.php?ad########
- http://cc###pbsdg.com/progs/jokkl/bxyyyyl.php
- http://cc###pbsdg.com/progs/jokkl/liivvwf.php
- http://cc###pbsdg.com/progs/jokkl/aqmznana.php
- http://cc###pbsdg.com/progs/jokkl/dzzaaanxkx.php
- http://cc###pbsdg.com/progs/jokkl/vrrsfssgt.php
- http://cc###pbsdg.com/progs/jokkl/qmzhr.php
- http://cc###pbsdg.com/progs/jokkl/cclmmmzmna
- http://cc###pbsdg.com/progs/jokkl/hhrrre.php?ad#################################################
- DNS ASK cc###pbsdg.com
- 'C:\pvrmw.exe'
- 'C:\hvsv.exe'
- 'C:\vatr.exe'
- 'C:\ixrpcmeh.exe'
- 'C:\uefrsbjo.exe'
- 'C:\gcqwav.exe'
- 'C:\kuiluxt.exe'
- '<SYSTEM32>\cmd.exe' /c del <Полный путь к файлу> > nul