Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",metklqbmjuf install
- %TEMP%\ins1.tmp
- 'wg##o.cz.cc':80
- wg##o.cz.cc/HvmQHempyyRz1cjhdw+dIJs+bQajvL4H5KiZojocwcwoPB+H27RSmcBBiz/Nk0O0oWK/bf3LZB0E8uN6qA0JRQFLfL1qF/36HLh3lCtbT8D4Bg==
- wg##o.cz.cc/myyuqQUj+Bw7cPTZYtwd087ESmSbpZdMcSz0DT5ZOrFKMPwXKPq/ZtnmPq/LvIySxm7Ct1twx9Bkpg5GnO5YFLJz8ZPfFTbUTTsOmkDp+DGSL30NYytNIbDasrL3JivBRL3xDYFFxXetcZENmyI2G0odq4BXpk2bkrl5b6aE1SU5G8uLdGTDG5EUXdJnNNFJyKMbOYeUKTA=
- DNS ASK wg##o.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''