Техническая информация
- '<SYSTEM32>\rundll32.exe' "%TEMP%\ins1.tmp",xqjtifcdiwi install
- %TEMP%\ins1.tmp
- 'ke####eloke.cz.cc':80
- ke####eloke.cz.cc/VjMAeXUt51kVur7Q0tWsRpDDk3+i3ZFMU1ipUS8hHpMQ899Q4DJsH8O8A1jihRoly4aZ97VdPyysFT50YMqEsGLyuZK8WEZypDItE85toaq5Bw==
- ke####eloke.cz.cc/bjHxMUilq12eQ0yNU4QIeb8/IIZTFuE8IBjZSJJXCRlsp7641+gjRnb9HLVpSntHNftHwRjnXwzL84iJ0lqdWeSlglV+S59IJRymoyHZnBdnGi7RzNRay8bNKuvrWd/3r7fp8EIo/vJNrNm/FmeXZ5NvpsjYN+VngpQ+8SM2K19WFJCoYSvRhAq0K9+VkOgGJWnO17TyNHs=
- DNS ASK ke####eloke.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''