Техническая информация
- <SYSTEM32>\tasks\winprln
- %TEMP%\dllhost.exe
- %TEMP%\chromedriver.exe
- %TEMP%\geckodriver.exe
- %TEMP%\webdriver.dll
- '2n#.co':443
- DNS ASK 2n#.co
- '<SYSTEM32>\cmd.exe' /C schtasks /create /tn \WinPrLn /tr %TEMP%\\dllhost.exe /sc minute /mo 1 /f
- '<SYSTEM32>\dllhost.exe'
- '<SYSTEM32>\schtasks.exe' /create /tn \WinPrLn /tr %TEMP%\\dllhost.exe /sc minute /mo 1 /f