Техническая информация
- %WINDIR%\explorer.exe
- %WINDIR%\syswow64\colorcpl.exe
- %TEMP%\o2gzpa5k93lz6
- %TEMP%\nsyc272.tmp\gehpvhi.dll
- 'qi###aijcc.com':80
- http://www.qi###aijcc.com/fqiq/?c2##################################################################################
- DNS ASK se####rother.com
- DNS ASK 24###words.com
- DNS ASK qy###eo8.xyz
- DNS ASK ip####work.today
- DNS ASK fy###nkin.quest
- DNS ASK do##ycc.com
- DNS ASK ff###no43.xyz
- DNS ASK su###oil4u.com
- DNS ASK es#####oradosprings.com
- DNS ASK he#####weekendtips.com
- DNS ASK hi####awards.com
- DNS ASK qi###aijcc.com
- DNS ASK av####rade.online
- '%WINDIR%\syswow64\colorcpl.exe'
- '%WINDIR%\syswow64\cmd.exe' del "<Полный путь к файлу>"