Техническая информация
- <SYSTEM32>\rundll32.exe connect
- <SYSTEM32>\rundll32.exe
- %TEMP%\logrdeventsmaxo3.cfg
- 'www.em######alback.xpg.com.br':80
- 'bi#.ly':80
- 'www.te#####2010.xpg.com.br':80
- 'www.em#####zeze.xpg.com.br':80
- www.em######alback.xpg.com.br/emaildomalback.txt
- www.em#####zeze.xpg.com.br/emaildozeze.txt
- www.te#####2010.xpg.com.br/tessado2010.txt
- bi#.ly/10CgA6m?
- DNS ASK www.em######alback.xpg.com.br
- DNS ASK bi#.ly
- DNS ASK www.te#####2010.xpg.com.br
- DNS ASK www.em#####zeze.xpg.com.br
- ClassName: '' WindowName: 'rundll32.exe'