Техническая информация
- '' (загружен из сети Интернет)
- 'C:\users\public\vbc.exe'
- %WINDIR%\explorer.exe
- vbc.exe
- C:\users\public\vbc.exe
- C:\users\public\vbc.exe
- '10#.#33.106.199':80
- 'ka####ichang.com':80
- 'so####rngiggle.com':80
- 'le###uba.com':80
- 'bi###chfla.com':80
- 'za######ge-billstedt.com':80
- 'gt##.net':80
- 'we####dclones.com':80
- 'ha####oneybaby.com':80
- 'ar###xcorp.com':80
- http://www.su###uku.com/imi7/?_0######################################################################################
- DNS ASK th##oft.com
- DNS ASK ka####ichang.com
- DNS ASK ab###art.com
- DNS ASK so####rngiggle.com
- DNS ASK le###uba.com
- DNS ASK bi###chfla.com
- DNS ASK za######ge-billstedt.com
- DNS ASK gt##.net
- DNS ASK bl#####lldesignco.com
- DNS ASK we####dclones.com
- DNS ASK ha####oneybaby.com
- DNS ASK ar###xcorp.com
- DNS ASK su###uku.com
- '%CommonProgramFiles%\microsoft shared\equation\eqnedt32.exe' -Embedding
- '%WINDIR%\syswow64\rundll32.exe'
- '%WINDIR%\syswow64\cmd.exe' del "C:\Users\Public\vbc.exe"