Техническая информация
- '%TEMP%\temp_folder.exe'
- %TEMP%\temp_folder.exe
- %APPDATA%\microsoft\windows\templates\takkels220\overpresumptively\jordanerens.ank
- %APPDATA%\microsoft\windows\templates\takkels220\overpresumptively\agraffe.non
- %APPDATA%\microsoft\windows\templates\takkels220\overpresumptively\blaoners.maj
- %APPDATA%\microsoft\windows\templates\takkels220\overpresumptively\overassume\tetrabranchiate.hyp
- %TEMP%\nsb44fc.tmp\system.dll
- '18#.#52.179.254':80
- http://18#.#52.179.254/data/loki.eXE
- '%CommonProgramFiles%\microsoft shared\equation\eqnedt32.exe' -Embedding