Техническая информация
- %TEMP%\bjzaxzzfkt.js
- %TEMP%\vuxonth_97922.exe
- %TEMP%\vuxonth_29561.exe
- 'ab#.net.in':80
- http://my###tstore.com/LSGA6M
- http://ea####tshop.com.br/fkboKu
- http://th####ding.pictures/EnKLJk
- http://ta###iti.com/MfZwxQ
- http://sw###led.co.uk/lTKbdU
- http://vi#####shairstore.com/oaS39q
- http://gr####lounge.com/iwFqDz
- http://ro##da.com/tw5MeF
- http://lu###bling.com/UK0NdI
- http://ed##kb.ru/g9UReM
- http://si####gems.com.au/lczTQ6
- http://rc###namade.com/do48kR
- DNS ASK my###tstore.com
- DNS ASK ch####utplanet.com
- DNS ASK kg###obal.com
- DNS ASK sh####mejewelry.com
- DNS ASK rc###namade.com
- DNS ASK ne###ws.com.br
- DNS ASK st##-tex.ru
- DNS ASK si####gems.com.au
- DNS ASK ed##kb.ru
- DNS ASK lu###bling.com
- DNS ASK ra#####chiavon.com.br
- DNS ASK ob###ate.com
- DNS ASK de####hopper.com
- DNS ASK ir##ems.com
- DNS ASK ro##da.com
- DNS ASK bb##aar.us
- DNS ASK gr####lounge.com
- DNS ASK vi#####shairstore.com
- DNS ASK sw###led.co.uk
- DNS ASK ta###iti.com
- DNS ASK th####ding.pictures
- DNS ASK ho####sire.co.uk
- DNS ASK ea####tshop.com.br
- DNS ASK hu######lsuppliesmfg.com
- DNS ASK hh##.#x3webs.com
- DNS ASK ab#.net.in
- '<SYSTEM32>\wscript.exe' %TEMP%\BJzAxZzfKt.js