Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",wyranoda install
- %TEMP%\ins1.tmp
- 'ro###ceck.cz.cc':80
- ro###ceck.cz.cc/bdcFGtgIvkoPM+l3JkPwuA5GFuswZApD0KAFxUyQNLJ5IdQD9YCNEwqCtYHmAkIwkkJqXDtq6Eqq9vJ4Zf5GLA+n8Nkhv4MXk2ir8n4Efts=
- ro###ceck.cz.cc/nTUJIpvVmvJx1Zq8RYzS+evG42TlxmFwyRbrrk9F7mLTUnR/DaAqEaRX4vfvUn9J6c9nImbtx/SKWLos0C8Dxkb0MEnxFvg3dxQyxCTaPk2IB3+hLz7jj7qPDylbrTFlJOvPPmK10iJdUAaL+nP3oL1c0tREKrZDesmlsiJtfq2y8j7BbFf9BhghT+VdTRpYRQoP3ksU
- DNS ASK ro###ceck.cz.cc
- '<IP-адрес в локальной сети>':1037
- ClassName: 'Shell_TrayWnd' WindowName: ''