Техническая информация
- <SYSTEM32>\comctl32.ocx
- <SYSTEM32>\comdlg32.ocx
- <SYSTEM32>\msinet.ocx
- <DRIVERS>\etc\hosts.ics
- <DRIVERS>\etc\hosts
- DNS ASK pe#######n-cits.blogspot.com
- DNS ASK ci######ongans.blogspot.com
- DNS ASK yo##u.be
- '<SYSTEM32>\cmd.exe' /c icacls <DRIVERS>\etc\hosts /reset' (со скрытым окном)
- '<SYSTEM32>\cmd.exe' /c icacls <DRIVERS>\etc\hosts.ics /reset' (со скрытым окном)
- '<SYSTEM32>\cmd.exe' /c icacls <DRIVERS>\etc\hosts /reset
- '<SYSTEM32>\cmd.exe' /c icacls <DRIVERS>\etc\hosts.ics /reset
- '%ProgramFiles%\mozilla firefox\firefox.exe' -osint -url "http://ci######ongans.blogspot.com/"
- '%ProgramFiles%\mozilla firefox\firefox.exe' -osint -url "https://youtu.be/uP7NrmhqSNI"
- '%ProgramFiles%\mozilla firefox\firefox.exe' -osint -url "http://pe#######n-cits.blogspot.com/2015/09/error-file.html"