Техническая информация
- '' (загружен из сети Интернет)
- 'C:\users\public\vbc.exe'
- %WINDIR%\explorer.exe
- vbc.exe
- %WINDIR%\syswow64\autochk.exe
- C:\users\public\vbc.exe
- C:\users\public\vbc.exe
- 'sp####accounts.com':80
- 'ch#####ccatering.com':80
- 'et####ianjulary.com':80
- 'ge####-beauty.com':80
- 'cl###ifoods.com':80
- 'ke###te.club':80
- 're###palla.com':80
- 'di######reativeclass.com':80
- 'da###xe.online':80
- DNS ASK ku#######dygotchtsnp.dns.army
- DNS ASK sp####accounts.com
- DNS ASK ch#####ccatering.com
- DNS ASK fu####anuletion.com
- DNS ASK et####ianjulary.com
- DNS ASK ge####-beauty.com
- DNS ASK cl###ifoods.com
- DNS ASK ke###te.club
- DNS ASK re###palla.com
- DNS ASK di######reativeclass.com
- DNS ASK da###xe.online
- DNS ASK 50####airway.com
- '%CommonProgramFiles%\microsoft shared\equation\eqnedt32.exe' -Embedding
- '%WINDIR%\syswow64\svchost.exe'
- '%WINDIR%\syswow64\cmd.exe' del "C:\Users\Public\vbc.exe"