Техническая информация
- %HOMEPATH%\ekczapjtzbxzas25a.bat
- %HOMEPATH%\bit9701.tmp
- %LOCALAPPDATA%\google\chrome\uzqgto\01.js
- %LOCALAPPDATA%\google\chrome\uzqgto\03.js
- %LOCALAPPDATA%\google\chrome\uzqgto\23.js
- %LOCALAPPDATA%\google\chrome\uzqgto\ico.png
- %LOCALAPPDATA%\google\chrome\uzqgto\manifest.json
- %HOMEPATH%\bit9701.tmp
- %HOMEPATH%\bit9701.tmp в %HOMEPATH%\ndyuhatnta.zip
- 'dr##box.com':443
- 'uc#############d6d846204d6af.dl.dropboxusercontent.com':443
- DNS ASK dr##box.com
- DNS ASK uc#############d6d846204d6af.dl.dropboxusercontent.com
- '<SYSTEM32>\cmd.exe' /c ""%HOMEPATH%\ekczapjtzbxzas25a.bat" "%HOMEPATH%\" "2nd_arg" "3rd_arg""