Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",mkpknlao install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\ZYifDAGcqYP8Mcsj37leD918hdq5YetMyJkosJ79433ONFTAyWZXtvgDN5aGqiTe+RDWfYYA0EymPkVu8jB3tSFXTYJI+b9cojW32jf0VLK0qQ==[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\qpu63oUEeZ2nsKeCak=[1]
- 'ko###r.cz.cc':80
- 'localhost':1035
- ko###r.cz.cc/ZYifDAGcqYP8Mcsj37leD918hdq5YetMyJkosJ79433ONFTAyWZXtvgDN5aGqiTe+RDWfYYA0EymPkVu8jB3tSFXTYJI+b9cojW32jf0VLK0qQ==
- ko###r.cz.cc/AEIXwcFYk6loHaE/Lhl9NBvRu8suzE8ZwXMPy5umbPY6H5kzRusFkLGOo/bSePsRKyGEl85DyL7xCzG1An8+q9FzbEUja7pC70sSZQUJO0rj5RP33uhjY0rDwJ7l5YkEv0nWuafIdiYqu2c4NtHMGBOUr9IaQTbWlsyx39gMoUCNN7XMSNFrCia+/qpu63oUEeZ2nsKeCak=
- DNS ASK ko###r.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''