Техническая информация
- '<SYSTEM32>\rundll32.exe' "%TEMP%\ins1.tmp",mhqymlmidldbboo install
- %TEMP%\ins1.tmp
- 'gr###onn.cz.cc':80
- gr###onn.cz.cc/EBQGlQieIIpmoNnaIqX35z/sQh6xBYleAjUGali9BqOjaFpyKHCtg8zoXFhP9i45L9Q3Ltm2RRR65RroWzK8MfnapXsdt138bsx5Wg+e763OMg==
- gr###onn.cz.cc/TFojjsCY1zZax1kIrq7xCdpSJJsUuCsoKEJbCcym24giF2sdJ4zE63gmqDSLbCg9qlGwkRx/AJ13OtMkJGDE24RqJ1dpjQA2X+dbqRfRtAYI1Ir0b8aQeTO1bu+OlVgzFU8WoTTGG8WH3p+XuzjyGhLOFxG2yBSmqkhqw8zUhTmWieVwjtMatM43yA6gHeCxByrMTER1dOY=
- DNS ASK gr###onn.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'