Техническая информация
- %WINDIR%\explorer.exe
- %TEMP%\nsbd52a.tmp\5e18vd6n7x.dll
- 'ig###acon.com':80
- 'th###hwfam.com':80
- 'za##.today':80
- 'do###roject.com':80
- 'bo#####apexpress.com':80
- DNS ASK ig###acon.com
- DNS ASK th###hwfam.com
- DNS ASK za##.today
- DNS ASK do###roject.com
- DNS ASK bo#####apexpress.com
- '%WINDIR%\syswow64\netstat.exe'
- '%WINDIR%\syswow64\cmd.exe' del "<Полный путь к файлу>"