Техническая информация
- %APPDATA%\Microsoft\windows\Start Menu\programs\startup\3lf18ba.lnk
- %ProgramFiles%\ab81fl3.jss
- %TEMP%\ab81fl3.jss
- %ProgramFiles%\3lf18ba.fee
- '37.##9.53.244':443
- '19#.#15.114.209':443
- '%WINDIR%\syswow64\rundll32.exe' C:\PROGRA~3\ab81fl3.jss,CCZ0
- '%WINDIR%\syswow64\rundll32.exe' %TEMP%\ab81fl3.jss,CCZ4