Техническая информация
- '%TEMP%\i9z0ag8ga2ad9wa.exe'
- '<SYSTEM32>\rundll32.exe' dfdts.dll,DfdGetDefaultPolicyAndSMART
- '<SYSTEM32>\netsh.exe' firewall add allowedprogram "%TEMP%\i9z0ag8ga2ad9wa.exe" "i9z0ag8ga2ad9wa.exe" ENABLE
- %TEMP%\i9z0ag8ga2ad9wa.exe
- 'localhost':35689