Техническая информация
- '<SYSTEM32>\xtwkfqkh.exe'
- '%TEMP%\№°ѕа.exe'
- '%TEMP%\№°ѕаАОБ§ЕН.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\vfsjn70pjhe58w9.bat
- <SYSTEM32>\xtwkfqkh.exe
- <SYSTEM32>\xtwkfqkh.exe
- %TEMP%\vfsjn70pjhe58w9.bat
- %TEMP%\№°ѕаАОБ§ЕН.exe
- %TEMP%\№°ѕа.exe
- <SYSTEM32>\xtwkfqkh.exe
- '12#.#34.237.106':80
- DNS ASK ma#.#aver.com
- DNS ASK po####8.no.ip.org
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'