Техническая информация
- %WINDIR%\syswow64\svchost.exe
- '11#.#5.166.10':801
- 'ip##8.com':80
- 'ys##########650.cos.ap-nanjing.myqcloud.com':443
- 'ip##8.com':443
- '10#.#93.189.167':9635
- http://11#.##.166.10:801/taskhosw.bin via 11#.#5.166.10
- http://www.ip##8.com/
- http://20##.ip138.com/
- http://10#.###.189.167:9635/controllers/?ac###################### via 10#.#93.189.167
- 'ip##8.com':443
- 'ys##########650.cos.ap-nanjing.myqcloud.com':443
- DNS ASK ip##8.com
- DNS ASK ys##########650.cos.ap-nanjing.myqcloud.com
- DNS ASK 20##.ip138.com
- '%WINDIR%\syswow64\svchost.exe'