Техническая информация
- '<SYSTEM32>\rundll32.exe' "%TEMP%\ins1.tmp",xvwbabsdskjy install worker
- %TEMP%\ins1.tmp
- 'sw###zek.mo.cx':80
- sw###zek.mo.cx/QJiQCwJIZr5wu+BiAy+r/9DscrIqTxNilDvIrqLJ6U4CVy7Kxfs4aPS5PhTGzO4WGl7p/kSUlat8BB1SOPO7+uApurYSVeTqJ+OKki7HC+E=
- sw###zek.mo.cx/jnrSBHIqanvtkZoxbQaEaIpRYPx3Y99u/CvzcNYq4HnMKNnl/rhDwa5WE7sa2Qnvoa6h1qssT6mPy+rt6w0yQT1YJKc+j/WqZ9X/yIfMQJYcb3uIQZ9eBm7kgdM6czHtawproA5UzYT6wnEH0TZ+yin7bWvPF4vgAv9GK3PiaGX9oc9W0IANx00r4Ghv/dsDpWLRQQBJ
- DNS ASK sw###zek.mo.cx
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'