Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",sfzuhjvsdeb install worker
- %TEMP%\ins1.tmp
- 'le###g.cz.cc':80
- le###g.cz.cc/ysYsumYmyulPA6RQC8Jj73MJLSOPiWGDaiG28mAQtQACXhatrOrOFhqSptwRrfBEjTx3gzm368DB9Uc68oQh7fODW844KVtOZl6gnMSjURY=
- le###g.cz.cc/XRtYKwIvZqJMHt+y09Q00UzuMhfK0mp2lqNNk010eItdgxDi3vaFc9t0NYe6GaoIwv2iF/24OwMq6td4DHieWLwBGiWAQ/H8/7XHMO+ZM/80rHuML1u0V2/9l9BLZhyLNB3hE/LqUiTcFJQ3KpXkLZkb/2dGKrftwNQrkFCnZ06tMD5t19SHkUtTYMMzvwlFfRD0luXd
- DNS ASK le###g.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''