Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'LBpatEqLE' = '%ALLUSERSPROFILE%\tdaSHWfp49Hr\44T1hG05noW210fp\Xe7pBP2nWdZfJ\W1U0wN3YTr328C\T6KGW1OOlYPfq\IWG8JM.exe'
- %ALLUSERSPROFILE%\tdaSHWfp49Hr\44T1hG05noW210fp\Xe7pBP2nWdZfJ\W1U0wN3YTr328C\T6KGW1OOlYPfq\IWG8JM.exe
- %ALLUSERSPROFILE%\tdaSHWfp49Hr\44T1hG05noW210fp\Xe7pBP2nWdZfJ\W1U0wN3YTr328C\T6KGW1OOlYPfq\IWG8JM.exe
- %ALLUSERSPROFILE%\88270c99ad172825a294c3e4179f1f4ac43cd6cd
- %ALLUSERSPROFILE%\tdaSHWfp49Hr\44T1hG05noW210fp\Xe7pBP2nWdZfJ\W1U0wN3YTr328C\T6KGW1OOlYPfq\IWG8JM.exe
- 'dl.##opbox.com':80
- dl.##opbox.com/u/74411887/test.txt
- dl.##opbox.com/u/57634671/test.txt
- dl.##opbox.com/u/24080239/test.txt
- DNS ASK se#####.#147852369.codisk.com
- DNS ASK www.ps###lo.co.cc
- DNS ASK b1#####4b6.publicvm.com
- DNS ASK dl.##opbox.com
- ClassName: 'Indicator' WindowName: ''