Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",oinpldtiemgmdne install
- %TEMP%\ins1.tmp
- 'sa###mps.cz.cc':80
- sa###mps.cz.cc/firnKecu7hWHhiHBQfwFU9i7tNrGY6ha7lVVkeoFo42qfnyOybBPZk16FFlIZwfKtb3zfCjrUIPcHDLCNnbNsJBQOCCjwa3kxmNmw6W7/My0RQ==
- sa###mps.cz.cc/KaehQmywf7PfrqhZLdRpTjm0bvGlZzqDSVebZ/GN4Ob/VyjOGucWzPbGkuPpdMqWbcQmsBYPuxIAtdx14fVbBa3I5h3AM+Wf7Ny/t+pw8qHAu6DC9XEiaxZL3KxFAmPxetARWxcw7/TqomAYHm7gG25bQzh1p9fXbJLD4Q9XRACvs7Jc04A5e0ZJWA17EfW0t+6ozZ6Jzvk=
- DNS ASK sa###mps.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''