Техническая информация
- %TEMP%\3nx3qqylnyxnt
- %TEMP%\3nx3qqylnyxnt.dll
- http://it####.servicos.ws/pvgbi
- http://www.of####dhandel.de/eg0vu
- DNS ASK ec####-canada.us
- DNS ASK it####.servicos.ws
- DNS ASK of####dhandel.de
- '<SYSTEM32>\rundll32.exe' %TEMP%\3NX3QQ~1.DLL,qwerty 323