Техническая информация
- %TEMP%\hcbxfgzyuoimlh
- %TEMP%\hcbxfgzyuoimlh.dll
- http://www.dr###nnoir.net/bmy053n
- http://sh####property.com/hypvx
- http://th####ongroup.com/hv2klu43
- DNS ASK dr###nnoir.net
- DNS ASK sh####property.com
- DNS ASK th####ongroup.com
- '<SYSTEM32>\rundll32.exe' %TEMP%\HCBXFG~1.DLL,qwerty 323