Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",tuhunasndc install
- %TEMP%\ins1.tmp
- 'lo###ed.cz.cc':80
- lo###ed.cz.cc/qyZHcGSe1MT4X9jGemAIdJy5KiVPp9uSNBv+eA117aFucZ6pH0Arml/Py8slUs1tyZhZL9KRvewIiMC3dioCuPiQck2DFmOMFNDMy1XZu1Mx9w==
- lo###ed.cz.cc/jgUcXJcO8DCXHaJU/bXQ5A15XI2UECX2BAoVMtakRVUBeN3eEAr4znWxJqJlyjvJC5j3bdEt9rRRbipU0rHczMvEgYZ8yZdAG4KQOLxFTVwI8lbIr/XDA82xseCUbryXpOC9oi9p1GnR7ZSPGoZ3IHj7qkO2uzm35zlVNbhJCDLU4E9Q9kOaesP46Fov51X6DGheGRTTHWQ=
- DNS ASK lo###ed.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''