Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",tuhunasndc install
- %TEMP%\ins1.tmp
- 'lo###ed.cz.cc':80
- lo###ed.cz.cc/oBeIzxohPlUUByJOwWVLQsJEvXq6Q4e5NZi/yTJCVOIHXs0GBydG2/Zgh5L86+pZvC/ABfnyltJ2sHzzfeSdBFDOJAavKA0FKeawaVFr0W2rXg==
- lo###ed.cz.cc/WlkgmHdm5chfUPAP6u2pLQBfdZMaleyElAFa8cOGZH6Tl2Y6CNyXkUHLOAA3cWFP+6maktmcveKgRh81aPps/eR828u5e8s27rmTcTTnL1weCcMQwm1nNHDcwO8gKxoGNX/FWvuvv0EpB2LK5VN6QP7mCgutHhwTBtyKPTw/DPpRNDpYvw08CrvmMd+xZ004h5yHbxK0kZY=
- DNS ASK lo###ed.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''