Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",hxoueddk install
- %TEMP%\ins1.tmp
- 'cr###kern.cz.cc':80
- cr###kern.cz.cc/SdmcasceKSJVus6XSVTMCU/kKqdfnnLFU1J67jhRnD9L8pYMSC2Qf9tY5q0HB47V7d+hCT03yngzkd7lyilq9+RHEyKFwREpOqNfvCEjh8kJ4w==
- cr###kern.cz.cc/iDgehTjJDvIhN1+XD5xGY+mfI+mbjA0Qkd94pidhl6we+uDnkMBFlB5drlYM0+T8d+XrsjQHHiu42lPQnHvW/J/BI1GJqNuStgnFUnbLNSFx34SY/Fg98oITwhZfmlKEVHxBsG8QuZ/DDb95Ul+QGfnkxnHHj1BVQTSTbAahpQvG3R3C2fmTj7f3jEVG0M9VxsJCRApe8HE=
- DNS ASK cr###kern.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''