Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",xqjtifcdiwi install
- %TEMP%\ins1.tmp
- 'me##r.cz.cc':80
- me##r.cz.cc/rbOugOfai2Ziy/WNwS0yJpP719xX2TTQxIDn7uv1HPTM19fnkfKNdVExOMKHVfrGPAwXQ3DU16tozf/jbbabEtU1iBO0pXgkdaZ1m+RXwwQ2UA==
- me##r.cz.cc/ogTYxKCDKkleqkyYzvGtXUESvzR5f1fXUwetWx5V7eWFZCYckgvbEwWF8mD63cpfsUPv9yMxvtV27HOEaJV+k+v0H5efNOKzuIT91eEP/kyXGTNhTMXY/uhKhGFy663QXhQrzIhGRn7BwV4NSinRLLk4DnOXq+fhP/MIP+zRrvph0qcDTbXMTkBLUxAmZnqdoHEc1rLj070=
- DNS ASK me##r.cz.cc
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''