Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",buszrfapaddecka install
- %TEMP%\ins1.tmp
- 'le###r.cz.cc':80
- le###r.cz.cc/MYqdPrmnkFEB+lA4qE3wU2Rch9m7Uk3Dqd5TpjBGQ7zP0o9UaIiqbn/zJcoXJBcsVbVjuCq5BKoeDiYwgOBCSBvD5Vz/RBKE0zpuKf2M7hq27w==
- le###r.cz.cc/cORnVytrWwBy6c2eYlaDJK2cE/2w4IYMZfilNMH4woa/rpti0029vcz2p/dmFVbVf9z6P+9SBbEigXbfBvM8U7JTm4mACzzMYdXPFLH76Z/yaWUWDC1IXW+6YL4sWTpWB8qV0RlyxEEhdjnKU1LKjlM9qMv2WCqHdCy1mkKKqgZxPil2GUdjzp7oqyHGC2bF/NuwiaziB6Y=
- DNS ASK le###r.cz.cc
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''