Техническая информация
- %TEMP%\sofiplrj.js
- %TEMP%\drfnuhm_26374.exe
- http://fa####ecia.com.br/2CNiOa
- http://fa####ecia.com.br/2CNiOa/
- http://le###alog.com/oN24SU
- http://re###are.com/cN5HRC
- http://sa####tojoe.com.br/sNPzuF
- http://sa####tojoe.com.br/sNPzuF/
- http://dr###nex.com/w9IjYE
- http://st######tjewellery.co.uk/Wgb1kc
- http://lk###estige.com/aR8LBr
- http://ve###as.com.br/Z4HMtD
- http://cl###ghts.com/vHFCzK
- http://sp##ou.com/d5CoHw
- DNS ASK fa####ecia.com.br
- DNS ASK ga####zoneuk.com
- DNS ASK pa####etwork.com
- DNS ASK le###alog.com
- DNS ASK ht####niture.com
- DNS ASK re###are.com
- DNS ASK sa####tojoe.com.br
- DNS ASK dr###nex.com
- DNS ASK st######tjewellery.co.uk
- DNS ASK lk###estige.com
- DNS ASK ve###as.com.br
- DNS ASK cl###ghts.com
- DNS ASK fa####racelets.com
- DNS ASK le###asari.com
- DNS ASK br###heeezi.com
- DNS ASK sp##ou.com
- '<SYSTEM32>\wscript.exe' %TEMP%\SOfIPlrj.js