Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",yxkjiglzgaxirkm install
- %TEMP%\ins1.tmp
- 'de###h.cc.im':80
- de###h.cc.im/QIQYSNvmmcgnLo3BCYKEo/dPcLjMln4erKDPRL1mM7PuTdDp6B8ZU8qG+7/lgoUo1BJdZxXd/hrd2w6AO84ByY0QlZYzBRoYDWIjrYHCCQE=
- de###h.cc.im/AbPqAKICWZnxCeWyNfF8uLB5gajzyklPTgbQW2DRNczIF3KDBMbmeUfzaSNQrP13cRO7opezYXPziAVxPhHmgwgl8qgEkEUmo+gXoOiErAwbHw2X5VK1FudBUsO9/LDTHrgNFRipUBmSR+Mwl7kRQFghW8ma8g0Oyu+lmQE7+JwHepPhb/L17YS41ZRqRoV79ZdSI2BW
- DNS ASK de###h.cc.im
- ClassName: 'Shell_TrayWnd' WindowName: ''