Техническая информация
- <SYSTEM32>\tasks\nvngxupdatecheckdaily_{a6b397e0-97e0-97e0-97e0-a6b397e097e0}
- %TEMP%\cc4f.tmp
- %APPDATA%\tbuicrh
- %TEMP%\fb79.exe
- %APPDATA%\tbuicrh
- http://18#.#0.184.80/200k.exe
- http://fu###0001.com/upload/
- http://fu###0001.info/upload/
- http://zo##533.xyz/upload/
- DNS ASK fu###0001.com
- DNS ASK fu###0001.info
- DNS ASK zo##533.xyz
- '%TEMP%\fb79.exe'