Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",iqbxguretphe install
- %TEMP%\ins1.tmp
- 'lc###n.cz.cc':80
- lc###n.cz.cc/FvbgWsibO7SyVZjFW1nnMdI4sey5Q1Pa6UxYGROau13j1zYsXgPLu/d51mFRZML1DvXQ5lq4P6Z7MIYj7/IEvRmaQo5Se+TCSgMKS/Tv3BfeTg==
- lc###n.cz.cc/aqlsWuTfGvPZJAonHU5CpT/mtzDfpCYY2o72v13jysy+ua9w66FGMn0+PuO3lrnz3Xz9fjUHQhSM1ms87HiT08ufsnh+E4TZP3C29/O5lIiY2vanD3sFJysak/wbLVDOKfzyG+97O7CCLK8ohLCscwpHOcd/IsmiGY8xRQ4AoesAi6Vjdd+I50yX6blkVRS3cgw9nLe8X0w=
- DNS ASK lc###n.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''