Техническая информация
- %HOMEPATH%\desktop\aoc_saq_d_v3_merchant.docx
- %HOMEPATH%\desktop\archer.avi
- %HOMEPATH%\desktop\dashborder_144.bmp
- %HOMEPATH%\desktop\default.bmp
- %HOMEPATH%\desktop\delete.avi
- %HOMEPATH%\desktop\february_catalogue__2015.doc
- %HOMEPATH%\desktop\garden.htm
- %HOMEPATH%\desktop\hanni_umami_chapter.doc
- %HOMEPATH%\desktop\iisstart.html
- %HOMEPATH%\desktop\thlps_keeper_mayer_1965.docx
- %HOMEPATH%\desktop\toolbar.bmp
- %HOMEPATH%\desktop\trivial-merge.html
- %HOMEPATH%\desktop\weeklysheet1215.doc
- %HOMEPATH%\desktop\hermes decrypt files.txt
- %HOMEPATH%\desktop\aoc_saq_d_v3_merchant.docx
- %HOMEPATH%\desktop\archer.avi
- %HOMEPATH%\desktop\dashborder_144.bmp
- %HOMEPATH%\desktop\default.bmp
- %HOMEPATH%\desktop\delete.avi
- %HOMEPATH%\desktop\february_catalogue__2015.doc
- %HOMEPATH%\desktop\icq.lnk
- %HOMEPATH%\desktop\mail.ru agent.lnk
- %HOMEPATH%\desktop\qip 2012.lnk
- %HOMEPATH%\desktop\telegram.lnk
- %HOMEPATH%\desktop\total commander 64 bit.lnk
- %HOMEPATH%\links\desktop.lnk
- %HOMEPATH%\links\downloads.lnk
- %HOMEPATH%\links\recentplaces.lnk
- %HOMEPATH%\contacts\user.contact
- из <Полный путь к файлу> в C:\user\rand123\local.exe
- 'google.com':443
- 'hi########hide.000webhostapp.com':443
- 'google.com':443
- 'hi########hide.000webhostapp.com':443
- DNS ASK google.com
- DNS ASK hi########hide.000webhostapp.com