Техническая информация
- %APPDATA%\Microsoft\windows\Start Menu\programs\startup\gwljw1j8z.lnk
- %ProgramFiles%\z8j1wjlwg.dss
- %TEMP%\z8j1wjlwg.dss
- %ProgramFiles%\gwljw1j8z.bxx
- 'co##############e-chains.prod.autograph.services.mozaws.net':443
- '37.##9.53.244':80
- '20#.#5.133.154':443
- DNS ASK co##############e-chains.prod.autograph.services.mozaws.net
- '%WINDIR%\syswow64\rundll32.exe' C:\PROGRA~3\z8j1wjlwg.dss,XL200
- '%WINDIR%\syswow64\rundll32.exe' %TEMP%\z8j1wjlwg.dss,XL204