Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",hxoueddk install
- %TEMP%\ins1.tmp
- 'ss###ey.cz.cc':80
- ss###ey.cz.cc/ZWMkyaEhg3l/CI5PzvJphSXQtBoB9uD1O97tK0ypVGaiFYmYp0q/TgIivlrGeYHl9sbgXpJmaq9RLr5MZimWzeV+U7t8wLqfvOE6C2InYx4gWA==
- ss###ey.cz.cc/vKIMTrLEXe75eWeuczEzgL53ado85wkiM32+RWd09aTVSOubOlSqbb0+QnndG7553eW7CLeoeczHxvnThNIZhAsuIrii+xXPiS4SlHBcz5kGuTqP9OkvqExcKVQB9k/FDoGmZvIUt7JGlrb2cY2f1ThnKx2zsaDIQm6zx7Ni2MNM+sCYGiHu3VQc4ZAKGmre6tuZARKhTdQ=
- DNS ASK ss###ey.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''