Техническая информация
- '' (загружен из сети Интернет)
- 'C:\users\public\vbc.exe'
- %WINDIR%\explorer.exe
- vbc.exe
- C:\users\public\vbc.exe
- %TEMP%\nsm78f.tmp\7rd4rst3de.dll
- C:\users\public\vbc.exe
- 'bi#.do':80
- 'ru#######2stdygansgh.dns.army':80
- 'hi#######mes-consultants.com':80
- 'ti###kid.net':80
- 'de####reezers.xyz':80
- 'fi####renchic.com':80
- 'ku#####translate.com':80
- 'ne##rem.com':80
- 'ez###domain.com':80
- 've###ets.net':80
- 'me###derdas.com':80
- 'cn###gzu.com':80
- 'sc#####sslerdesign.com':80
- 'di###alkn.com':80
- http://www.fo####inhead410.com/jzvu/?Af########################################################################################
- DNS ASK bi#.do
- DNS ASK di###alkn.com
- DNS ASK sc#####sslerdesign.com
- DNS ASK ha#####rliktekolay.com
- DNS ASK cn###gzu.com
- DNS ASK me###derdas.com
- DNS ASK ve###ets.net
- DNS ASK fo####inhead410.com
- DNS ASK ez###domain.com
- DNS ASK ku#####translate.com
- DNS ASK fi####renchic.com
- DNS ASK de####reezers.xyz
- DNS ASK ti###kid.net
- DNS ASK hi#######mes-consultants.com
- DNS ASK ru#######2stdygansgh.dns.army
- DNS ASK ne##rem.com
- DNS ASK va###rina.com
- '%CommonProgramFiles%\microsoft shared\equation\eqnedt32.exe' -Embedding
- '%WINDIR%\syswow64\colorcpl.exe'
- '%WINDIR%\syswow64\cmd.exe' del "C:\Users\Public\vbc.exe"