Техническая информация
- '%HOMEPATH%\documents\cxmgxob.exe'
- %HOMEPATH%\documents\cxmgxob.exe
- %WINDIR%\serviceprofiles\networkservice\appdata\locallow\microsoft\cryptneturlcache\metadata\f0accf77cdcbff39f6191887f6d2d357
- %WINDIR%\serviceprofiles\networkservice\appdata\locallow\microsoft\cryptneturlcache\content\f0accf77cdcbff39f6191887f6d2d357
- http://45.#3.30.20/l1o2c3o4m5o6t7i8v.php
- DNS ASK se###rsor.xyz
- ClassName: 'Static' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- '%HOMEPATH%\documents\cxmgxob.exe' ' (со скрытым окном)