Техническая информация
- %LOCALAPPDATA%\google\chrome\user data\default\cookies
- %TEMP%\cvbgdgdf.exe
- %LOCALAPPDATA%low\sqlite3.dll
- %LOCALAPPDATA%low\fraqbc8wsa
- %LOCALAPPDATA%low\1xvpfvjcrg
- %LOCALAPPDATA%low\rywtiizs2t
- %LOCALAPPDATA%low\rqf69azbla
- %LOCALAPPDATA%low\x3cf3ednhm
- %LOCALAPPDATA%low\fraqbc8wsa
- %LOCALAPPDATA%low\1xvpfvjcrg
- %LOCALAPPDATA%low\rywtiizs2t
- %LOCALAPPDATA%low\rqf69azbla
- %LOCALAPPDATA%low\x3cf3ednhm
- http://bn###hdfsasd.ug/az2.exe
- http://35.##8.60.178/gate/sqlite3.dll
- http://35.##8.60.178/gate/log.php
- DNS ASK bn###hdfsasd.ug
- DNS ASK drive.google.com
- DNS ASK do#########ocs.googleusercontent.com
- '%TEMP%\cvbgdgdf.exe'
- '%WINDIR%\syswow64\windowspowershell\v1.0\powershell.exe' Get-MpPreference -verbose