Техническая информация
- <SYSTEM32>\svchost.exe
- %TEMP%\mrguzddyntyw.sys
- 'pa###bin.com':443
- 'po##.#ashvault.pro':443
- 'localhost':9050
- 'tr####rmago.live':443
- 'pa###bin.com':443
- 'po##.#ashvault.pro':443
- 'tr####rmago.live':443
- DNS ASK po##.#ashvault.pro
- DNS ASK pa###bin.com
- DNS ASK tr####rmago.live
- '<SYSTEM32>\svchost.exe'