Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",hxoueddk install
- %TEMP%\ins1.tmp
- 'mm###ez.cz.cc':80
- mm###ez.cz.cc/fkWESFfF/5LTDvOrPYfVZKtPgGEEDS1SWBSrYK5naypjGYrlTwTMpQYjqKs8jWuN2TGMcIV1Zp+cA5Bzf580j15U5dYbBLxoMpF+rtKOYGzmdA==
- mm###ez.cz.cc/azSqntQdfMMrlZVBO/NDH2Djn4b3KX4z46gOvcGaIUmh9LI5q/AgEtYazwiktrxogfXNx7v3vLqd9kQBfp1r0jca6+F9qZYbBpfQUD8JEv1MzwWCY+NgPFYGSkP7r31U0hW2gqFWmkP6FczQBNTzqFIfEGLXI4AqNZQvcm3+Th+KYq7rVG3+UqZb9fXZMeTXywZSkumWF20=
- DNS ASK mm###ez.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''