If you use a Mac, edit the "/etc/hosts" file....
Yep, that´s efficient - when you know which address the "malware" will try to contact. In this case, the commotion must have rendered the insidious 192.168.... type of address fairly useless for them, so it will probably be abandonned soon (and, hopefully, the nitwit who got the idea of using it will be fired..).
However, it is unlikely that they´ll stop the practice altogether, so we´ll soon have some new "obfuscator" address (how about "Yourpersonaluserfolder.com"? ) to cope with. Then the edited hosts file will be stymied, but something like LittleSnitch will tell you what´s going on.