Техническая информация
- '<SYSTEM32>\rundll32.exe' "%APPDATA%\40349.dll" EsdSipCreateHash
- %APPDATA%\40349.dll
- 'pr###tecksa.com':443
- 'ga###ardin.me':443
- 'ma#####.nsmatrix3.com':443
- 'x1.#.lencr.org':80
- 'r3.#.lencr.org':80
- 'ma#####.nsmatrix3.com':443
- DNS ASK pr###tecksa.com
- DNS ASK re####.bgsr.site
- DNS ASK ga###ardin.me
- DNS ASK ma#####.nsmatrix3.com
- DNS ASK x1.#.lencr.org
- DNS ASK r3.#.lencr.org
- DNS ASK st####.rapidssl.com
- '<SYSTEM32>\rundll32.exe' "%APPDATA%\40349.dll" EsdSipCreateHash' (со скрытым окном)