Техническая информация
- '<SYSTEM32>\rundll32.exe' "%APPDATA%\62086.dll" OfflineFilesStart
- %APPDATA%\62086.dll
- 'su#######erviceproviders.com':443
- 'bw#####ivestudio.com':443
- 'ar####tsens72.fr':443
- 'r3.#.lencr.org':80
- 'za##lit.com':443
- 'x1.#.lencr.org':80
- http://r3.#.lencr.org/MFMwUTBPME0wSzAJBgUrDgMCGgUABBRI2smg%2ByvTLU%2Fw3mjS9We3NfmzxAQUFC6zF7dYVsuuUAlA5h%2BvnYsUwsYCEgQqqkKbqnEOK5zijDoH25Wa8A%3D%3D
- 'ar####tsens72.fr':443
- 'za##lit.com':443
- DNS ASK su#######erviceproviders.com
- DNS ASK bw#####ivestudio.com
- DNS ASK ar####tsens72.fr
- DNS ASK r3.#.lencr.org
- DNS ASK za##lit.com
- DNS ASK x1.#.lencr.org
- '<SYSTEM32>\rundll32.exe' "%APPDATA%\62086.dll" OfflineFilesStart' (со скрытым окном)