Техническая информация
- %APPDATA%\Microsoft\windows\Start Menu\programs\startup\mqbrhrj3.lnk
- %ProgramFiles%\3jrhrbqm.jss
- %TEMP%\3jrhrbqm.jss
- %ProgramFiles%\mqbrhrj3.fee
- '37.##9.53.244':80
- '62.##2.82.37':80
- '%WINDIR%\syswow64\rundll32.exe' C:\PROGRA~3\3jrhrbqm.jss,CCZ0
- '%WINDIR%\syswow64\rundll32.exe' %TEMP%\3jrhrbqm.jss,CCZ4