Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",wimettskjsswbkd install
- %TEMP%\ins1.tmp
- 'de###do.cz.cc':80
- de###do.cz.cc/MaxphGJd2kVghs+DOOFMLdoKnk4hVeG/TJnqyZYvv9AHsboLq+53/xRRTxaDh9kdmMigfyVmsdt2mdwtagl2UvYnBTwi4GKtLLbjaB7yQ5QdMA==
- de###do.cz.cc/BawqYBOzwyiX+n2+6P7yicrTthW1ovZOmKFeemnrjwmrflEScR8CZ/3LMExZ6t5h00mzsfRGgFC4/Hth+L26TZZahiGLdHOj5untzAIdXJB+DLgiiY/Vp5rRvXD6Ql8TwhAswTWSw2qJZGwp9V+oBgizz3eq+1fNJj9Y26B7HRoxuWPpab2oSH1NZTuUCEG5nBtO7ugC97c=
- DNS ASK de###do.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''