Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",knzlvyxp install
- %TEMP%\ins1.tmp
- 'ko###nsko.cz.cc':80
- ko###nsko.cz.cc/TVTlUxsIOcjmmbrnfVcr9KhAWTrzMmAElEUSqY0nfQtOUmqcUYMfVr+AyjvC2LM4nJU0YbZEBUwAtq7qRCU+SL3kEWpNT2TWmg7g87BSVOSOLA==
- ko###nsko.cz.cc/EscqzWcAfT0gm7TCku1TuToxjX9tRPurgRymhCV0+WyQ2wjCa2P8nvdcdYiSbBoZysvB15rI3tZJZ0ZDKSOtMYhqiYjCSrxyFPsVJIUP5j+uw82uQjCDmyUDEnFND4zsK76j9cSvXFEBb9v4YezIrmlTMFvep2ngqu06Qidef2L/oBkv+ZaiUxCPXNSx0b3CH7X/id8Fv8Q=
- DNS ASK ko###nsko.cz.cc
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Shell_TrayWnd' WindowName: ''