Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",tbjcuymnbt install
- %TEMP%\ins1.tmp
- 'ko###l.cz.cc':80
- ko###l.cz.cc/iQwUrRBJNJGfKnQ43W12ZhrXclikADnXL32Tbn5jshiapyqwxzObYDIRamPCJsCnIij+5cbm3lng+6rkAZqC7nuOf6fafg1aUGHkdHityAytlQ==
- ko###l.cz.cc/QopXydpOO4VxBRchX9v5AYd/+2lwoYpnrj9tv3ni95WexZ4zQFfnWVdCV9IdU+LkowT7sFk9whbewDOYzSzijVETXUgWobJYpeOVWp7oLW/PM8O7fp8sbgoSi8hx9m0I8VG+Kf9ptQOgGFvNsMQNPicVpEwHmJQGgzeSEnkE6vPzg1zZwPUS+JIy8IV++NljslzbmGosNQg=
- DNS ASK ko###l.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''