Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",yxkjiglzgaxirkm install
- %TEMP%\ins1.tmp
- 'ko###o.cc.im':80
- ko###o.cc.im/pWJTltFV6KYmQQm0NkxK3Zz1Nvl9+Lv1UDtJfCLgLe8ilPUnwPqWZNmjr/NqwoBPhUYWXVqNjGgwpXzViljVNc+96H016swCTQKstcwB5Qc=
- ko###o.cc.im/qAJlluDAAd9SPnID/k2AaDhD44d0AcX1JBVA4J/Dn7QcVyj8evHiiv9f9nGeI1JREvaxlxFQLqj4IPKj9lSBwsJTxAmb+JrlJpUK/LXmAatCNx5U28V7u55kAf1VExySds6yRcsLcSpdUTBfWU0trxvHFJ1EmLkjCkHBUCNoglDswJl1wbqvqHiJXxsxUGpmbUoq3pxC
- DNS ASK ko###o.cc.im
- ClassName: 'Shell_TrayWnd' WindowName: ''