Техническая информация
- <SYSTEM32>\tasks\nvngxupdatecheckdaily_{78821544-1544-1544-1544-788215441544}
- %TEMP%\4dd3.tmp
- %APPDATA%\aihrurg
- %APPDATA%\bhhbbhi
- %TEMP%\594d.tmp.exe
- %APPDATA%\aihrurg
- %APPDATA%\bhhbbhi
- '10###########lder1002002131-service1002.space':80
- '10##########older33417-01242510022020.space':80
- '10############6831-service1002012510022020.space':80
- 'te##te.in':443
- http://10############6831-service1002012510022020.space/raccon.exe
- http://10##########older33417-01242510022020.space/
- http://10############6831-service1002012510022020.space/
- DNS ASK 10###########lder1002002131-service1002.space
- DNS ASK 10###########lder1002002231-service1002.space
- DNS ASK 10##########older3100231-service1002.space
- DNS ASK 10###########lder1002002431-service1002.space
- DNS ASK 10###########lder1002002531-service1002.space
- DNS ASK 10##########older33417-01242510022020.space
- DNS ASK 10############5831-service1002012510022020.space
- DNS ASK 10############6831-service1002012510022020.space
- DNS ASK 10############7831-service1002012510022020.space
- DNS ASK te##te.in
- '%TEMP%\594d.tmp.exe'