Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\jw8frmqld.lnk
- '<SYSTEM32>\rundll32.exe' %TEMP%\dlqmrf8wj.dss,XL204
- '<SYSTEM32>\rundll32.exe' %ALLUSERSPROFILE%\Application Data\dlqmrf8wj.dss,XL200
- %ALLUSERSPROFILE%\Application Data\jw8frmqld.bxx
- %TEMP%\dlqmrf8wj.dss
- %ALLUSERSPROFILE%\Application Data\dlqmrf8wj.dss
- '37.##9.53.244':80
- '37.##9.53.204':443