Техническая информация
- %HOMEPATH%\Start Menu\programs\startup\7tmqjw8he.lnk
- %ALLUSERSPROFILE%\Application Data\eh8wjqmt7.dss
- %TEMP%\eh8wjqmt7.dss
- %ALLUSERSPROFILE%\Application Data\7tmqjw8he.bxx
- '19#.#15.114.209':443
- '37.##9.53.204':80
- '<SYSTEM32>\rundll32.exe' %ALLUSERSPROFILE%\Application Data\eh8wjqmt7.dss,FFZ0
- '<SYSTEM32>\rundll32.exe' %TEMP%\eh8wjqmt7.dss,FFZ4