Техническая информация
- '<SYSTEM32>\cmd.exe' /c %WINDIR%\aaafc9fe2f4.bat
- '<SYSTEM32>\rundll32.exe' "%WINDIR%\WINDOWSS.INI",main
- %WINDIR%\aaafc9fe2f4.bat
- %PROGRAM_FILES%\temp0\QQ.exe
- %WINDIR%\WINDOWSS.INI
- 'lu####568.3322.org':8091
- DNS ASK lu####568.3322.org