Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",tbjcuymnbt install
- %TEMP%\ins1.tmp
- 'mo##y.cz.cc':80
- mo##y.cz.cc/ZJqIrPMWGO8ZnMPFWtvSOzoStpAdf9Ec/XCUJoVbfnzoowUGrI6pWy1QRp2o4juvuBPhJy3uQJNlS8+Sbfo6BhSIyrcFW8dS2+VCIqvD6yN40g==
- mo##y.cz.cc/sUKjNtSxdxgkLTBxveC7vTfNGucKwDA/T7FeC2i/eDePS5j3VhDRH44rwW1jdKbOHaJkagxsmPHPwNxklmBRdmJcQv5YBmQiz+JILY2yiqTb1Sz72M8ZC/2oXv/SYXka3lkOM06k3+qiJO1owkk+NhjNFyjWyaqkVrPlf9qn8UuUYIyuMP6HTwyvFEfTezToMnJrXmseWHw=
- DNS ASK mo##y.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''