Техническая информация
- %WINDIR%\explorer.exe
- 'bi####k-global.com':80
- 'ke####gimprints.com':80
- 'mo###evices.com':80
- 'vi###ncer.com':80
- '24###1675.com':80
- http://www.lo#####sbodycare.com/mg28/?BJ###################################################################################
- DNS ASK xn######ev3me2w06rcoc.com
- DNS ASK bi####k-global.com
- DNS ASK ke####gimprints.com
- DNS ASK en######rayerwarriors.com
- DNS ASK mo###evices.com
- DNS ASK gr####ghosted.net
- DNS ASK pe###otico.com
- DNS ASK lo#####sbodycare.com
- DNS ASK vi###ncer.com
- DNS ASK 24###1675.com
- '%WINDIR%\syswow64\cmd.exe'
- '%WINDIR%\syswow64\cmd.exe' del "<Полный путь к файлу>"