Техническая информация
- '<SYSTEM32>\regsvr32.exe' /S ..\cui1.ocx
- %HOMEPATH%\cui1.ocx
- 'by###est3.com':80
- 'ca####bros.co.za':80
- http://by###est3.com/cgi-bin/TEq/
- http://ca####bros.co.za/logs/KSTJNdxZ73hIZPKddEDT/
- DNS ASK by###est3.com
- DNS ASK ca####bros.co.za
- '<SYSTEM32>\regsvr32.exe' /S ..\cui1.ocx' (со скрытым окном)