Техническая информация
- %TEMP%\hymhqxeucw.js
- %TEMP%\guuqqtn_64753.exe
- %TEMP%\guuqqtn_97389.exe
- %TEMP%\guuqqtn_19754.exe
- %TEMP%\guuqqtn_23235.exe
- 'as####vesit.co.uk':80
- http://ba#####foenelmar.com/UDGKfz
- http://bi####nlibre.com/NI5QRK
- http://ar##it.ru/QRspKz
- http://ba###ehype.com/plzg3U
- http://bh####afoods.com/AJZWId
- http://bo##var.ru/w782j3
- http://bm##inc.com/4Fv7sK
- http://bo##nz.net/zlsFhm
- http://az##s.com/BCxfzy
- http://b2####daction.fr/8IB6TP
- http://ba##edia.pl/BEVwnx
- http://ar####lescope.ru/hZgYLO
- http://ba####thingz.com/FBsQtK
- http://ar####alurji.com/KmvUJ5
- http://bn##oft.in/g8RvjV
- http://be##esi.net/p1U6al
- http://as##-ir.com/GRV4hE
- http://bi#####inovasyon.org.tr/M4W7Hi
- http://ba#####valandirma.com/7MQ2AT
- http://ba####sgarden.com/FXPosh
- http://bm###adag.com/VqWdRF
- http://bi###ebel.net/KyFfgv
- http://be###yworld.hu/BAj60H
- http://au####oncepts.org/GdEpDm
- http://ba###xico.com/POltGd
- http://bi###inrus.ru/IzAtbH
- http://av##roup.su/KLrgZY
- http://ba####amedyczne.eu/icyJXw
- http://ba#####sforboobs.org/9cKD60
- DNS ASK ba#####foenelmar.com
- DNS ASK az##s.com
- DNS ASK bo##nz.net
- DNS ASK bi####pic.com.tr
- DNS ASK ar#######ubmissionwebsites.com
- DNS ASK bk##.com
- DNS ASK bm##inc.com
- DNS ASK ar####utplates.in
- DNS ASK ba##aal.com
- DNS ASK be####eonebd.com
- DNS ASK bl##.#obrystolik.pl
- DNS ASK ba###ehype.com
- DNS ASK ar##it.ru
- DNS ASK as###urid.net
- DNS ASK av###.com.tr
- DNS ASK au###agic.co.at
- DNS ASK bi####nlibre.com
- DNS ASK ar####alurji.com
- DNS ASK bo##var.ru
- DNS ASK bh####afoods.com
- DNS ASK b2####daction.fr
- DNS ASK ba##edia.pl
- DNS ASK ar####lescope.ru
- DNS ASK av##roup.su
- DNS ASK bi###inrus.ru
- DNS ASK ba###xico.com
- DNS ASK au####oncepts.org
- DNS ASK be###yworld.hu
- DNS ASK bi###ebel.net
- DNS ASK at###tic-co.com
- DNS ASK bm###adag.com
- DNS ASK ba####tsmarried.com
- DNS ASK ba####sgarden.com
- DNS ASK ba#####valandirma.com
- DNS ASK bi#####inovasyon.org.tr
- DNS ASK as##-ir.com
- DNS ASK be##esi.net
- DNS ASK av#####nelcrafts.com
- DNS ASK ba####amedyczne.eu
- DNS ASK bn##oft.in
- DNS ASK ba####thingz.com
- DNS ASK ay####bimbenim.com
- DNS ASK ba#####sforboobs.org
- DNS ASK as####vesit.co.uk
- '<SYSTEM32>\wscript.exe' %TEMP%\hyMhqxeUcW.js