Техническая информация
- 'C:\users\public\vbc.exe'
- C:\users\public\vbc.exe
- %LOCALAPPDATA%\microsoft\windows\<INETFILES>\ie\frl9mnkh\windows-app-web-link[2].json
- %TEMP%\bit15f5.tmp
- %TEMP%\bit8375.tmp
- %TEMP%\bit8c7e.tmp
- %TEMP%\bit15f5.tmp
- %TEMP%\bit8375.tmp
- %TEMP%\bit15f5.tmp в %TEMP%\wctb37.tmp
- %TEMP%\bit8375.tmp в %TEMP%\wct8375.tmp
- http://19#.#3.207.82/rmp/vbc.exe
- 'g.##ve.com':443
- 'on####ent.sfx.ms':443
- DNS ASK g.##ve.com
- DNS ASK on####ent.sfx.ms
- ClassName: 'OleMainThreadWndClass' WindowName: ''
- '%ProgramFiles(x86)%\microsoft office\office16\excel.exe' /dde
- '%CommonProgramFiles(x86)%\microsoft shared\equation\eqnedt32.exe' -Embedding