Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",neywywnrbstt install
- %TEMP%\ins1.tmp
- 'mo###te.cz.cc':80
- mo###te.cz.cc/qPVOMJxfHN6DABspdUPX1srYuUpVICpVJ7qQtI0HS3I5NrYBTz/Qu+ZxwrUJf+pa2Mv8JesIizW8OeReBWJM9AIwjBy3M0SVZwUIIEYvMm5Eng==
- mo###te.cz.cc/FZfdpzCArrm60hVhnFdsCLwHyTCImuzW8p7+pfTCEN2+b74VLWqwvqx/xP2WbxLeuP6wUhjYKhftu6e+A7RoClDdHzP0jRzsh8gY8sL8uw8GY/no+lGRigFeADTkfD+w08BBkcEzQ6CApH6Xc1qhTsRqK7zVQQutoBqOUnvayfRXK+SAZAF1USzJQU7uryPyObW6CS+KnOY=
- DNS ASK mo###te.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''