Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\wlrmq8zbf.lnk
- '<SYSTEM32>\rundll32.exe' %TEMP%\fbz8qmrlw.dss,XL204
- '<SYSTEM32>\rundll32.exe' %ALLUSERSPROFILE%\Application Data\fbz8qmrlw.dss,XL200
- %ALLUSERSPROFILE%\Application Data\wlrmq8zbf.bxx
- %TEMP%\fbz8qmrlw.dss
- %ALLUSERSPROFILE%\Application Data\fbz8qmrlw.dss
- '20#.#5.133.154':443
- '37.##9.53.244':443