Техническая информация
- '' (загружен из сети Интернет)
- 'C:\users\public\vbc.exe'
- %WINDIR%\explorer.exe
- vbc.exe
- C:\users\public\vbc.exe
- %TEMP%\nsc113f.tmp\deakopmlg.dll
- C:\users\public\vbc.exe
- 'bi#.do':80
- 'st#######tlenverpsfd.dns.army':80
- 'le####aryrelics.com':80
- 'pv##a.com':80
- 'au#####anonymous.net':80
- 'yz###hcl.com':80
- 'hi###emedya.com':80
- 'em####center.com':80
- 'ai###dslink.com':80
- 'ad######democracy.computer':80
- 'th####boldtlife.com':80
- http://www.da##.com/smd0/?hL########################################################################################
- http://www.vi####vert.store/smd0/?hL########################################################################################
- http://www.fo#####renalactive.com/smd0/?hL########################################################################################
- DNS ASK bi#.do
- DNS ASK fo######tables-chairs.com
- DNS ASK fo#####renalactive.com
- DNS ASK vi####vert.store
- DNS ASK ai###dslink.com
- DNS ASK st####assets.com
- DNS ASK em####center.com
- DNS ASK ad######democracy.computer
- DNS ASK hi###emedya.com
- DNS ASK yz###hcl.com
- DNS ASK au#####anonymous.net
- DNS ASK pv##a.com
- DNS ASK fj##hmq.com
- DNS ASK le####aryrelics.com
- DNS ASK st#######tlenverpsfd.dns.army
- DNS ASK da##.com
- DNS ASK th####boldtlife.com
- '%CommonProgramFiles%\microsoft shared\equation\eqnedt32.exe' -Embedding
- '%WINDIR%\syswow64\msiexec.exe'
- '%WINDIR%\syswow64\cmd.exe' del "C:\Users\Public\vbc.exe"