Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",tuhunasndc install
- %TEMP%\ins1.tmp
- 'lo###ed.cz.cc':80
- lo###ed.cz.cc/ZzKPIpGH0SyJHWPPjDbWXiAIVWfT+bgtqZ5Z4NajO381kUf74G9l3QP/y9uMAVNTrI7VhnRJXprfn1W26938zgU2bY+73RFjPFNh2ZG4NNdSnw==
- lo###ed.cz.cc/ZdxgfLkVd+lRtL+6jAA7pQCM2KTsCs5uzQDJnH1CCvYgI/OAVd+fwQetru9e/zDZJ1PgMPXsU1a2x6B1MIRzdsUfdXh2vqzDK99URMI325EoF5912GZj9oU/E28WuBTaHPPMmqG9eLqil0PB/zcLlFlxE7nIAMlWWbXP7ARadfG5pUgkj5CiQqy+Z5/FuIv73wztbMx3lw8=
- DNS ASK lo###ed.cz.cc
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Shell_TrayWnd' WindowName: ''