Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",zwwhkjtqyvnth install
- %TEMP%\ins1.tmp
- 'cl###ett.mo.cx':80
- cl###ett.mo.cx/rhqiDlTSHzeC/s8KLSdE3UnSRC5boycadYBD3qCnWjy76hVz6aW1iTCs1a1OOg5latyMkLPrPSqv8vLNeG8cUE112vicN9brtuh1LiifDbU=
- cl###ett.mo.cx/FZvhKNlvXefUIC1ATIUuZShy869RJCCN/tziUHaAe3HbFCOynrf+vb3LaFhnJGVNjAcNkw/Cof8a3kx9gsQ4HPmNN/nz7DO9rXBbrvK+tteOkBOUWwDz35FM/huvtpVCHX0H+47acuuI7rhVHxgF9iHrkIR5mUY6uXdE4jeW9kroIECNAiMeEOHRshNTUBbUCh/+tJhh
- DNS ASK cl###ett.mo.cx
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Shell_TrayWnd' WindowName: ''