Техническая информация
- <SYSTEM32>\services.exe
- %WINDIR%\Explorer.EXE
- C:\RECYCLER\S-1-5-18\$2ebe1c2e2a38cb36436c4d1cb8c2630c\n
- C:\RECYCLER\S-1-5-21-2052111302-484763869-725345543-1003\$I58AFF310
- C:\RECYCLER\S-1-5-18\$2ebe1c2e2a38cb36436c4d1cb8c2630c\@
- C:\RECYCLER\S-1-5-21-2052111302-484763869-725345543-1003\$2ebe1c2e2a38cb36436c4d1cb8c2630c\@
- C:\RECYCLER\S-1-5-21-2052111302-484763869-725345543-1003\$2ebe1c2e2a38cb36436c4d1cb8c2630c\n
- из <Полный путь к вирусу> в C:\RECYCLER\S-1-5-21-2052111302-484763869-725345543-1003\$R58AFF310
- 'j.###mind.com':80
- j.###mind.com/app/geoip.js
- DNS ASK \g#��(�
- DNS ASK \g#y4V*
- DNS ASK \g#`F@
- DNS ASK \g#L��
- DNS ASK \g#�m�B
- DNS ASK \g#�>�
- DNS ASK j.###mind.com
- DNS ASK \g#/#�
- DNS ASK \g#��
- DNS ASK \g#mc_