Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",zhslfddbh install
- %TEMP%\ins1.tmp
- 'cr###ell.cz.cc':80
- cr###ell.cz.cc/mIXbygqR3ZrKPP22rk9VR6pzKlRvMh1YVm+ruX/Uig7Vsj3zriq2Jl+DI1qoK2hUz3+EkIhl8hdfRXN18xaCMgXSem/kmQ/HNvG8GodTrQY=
- cr###ell.cz.cc/sjuRijqrCQWn0NL7Xy69A2QIQTkrq8cRFYlB9PwQzikFS6N/KbUM6K/0bbBwwIId6ZJZ4Of89o569SbzflOYqA8Pk3pMAutpr1rr2CadN42xvgU5S5KcTFpRWhKuLf2VR4Wl1yLFnibpGzVspR4+2B52hswlJoki8vZm20U1ANbTW8pV9POwEHunVYiw8O6lJeetnf7K
- DNS ASK cr###ell.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''