Техническая информация
- <SYSTEM32>\wermgr.exe
- <SYSTEM32>\cmd.exe
- %TEMP%\logfa07.tmp
- %TEMP%\logfa07.tmp
- '36.##.202.131':443
- 'microsoft.com':80
- 'id##t.me':443
- '89.##0.208.42':449
- '36.##.202.131':443
- 'id##t.me':443
- '89.##0.208.42':449
- DNS ASK microsoft.com
- DNS ASK id##t.me
- DNS ASK 19#.###.#11.95.zen.spamhaus.org
- DNS ASK 19#.###.#11.95.cbl.abuseat.org
- '<SYSTEM32>\wermgr.exe'