Техническая информация
- '<SYSTEM32>\rundll32.exe' "%TEMP%\ins1.tmp",thlruuiplkxztaw install
- %TEMP%\ins1.tmp
- 'cr##n.co.be':80
- cr##n.co.be/gIiqdauuUtaaqdsAZa67gQb7FO+DLKpaz1B+wK85BEZr5hSa9/5RnwHTw9RouPOKK+SsuFaj4ayAEgKdjWGCZ6lXVEHZfWu6/RvK/VFjhJLlXA==
- cr##n.co.be/UWTVDInoSUe5F5qbWc1k1pYvwmjm0s7zeV9xV0gUB8DHIoNwwG64wcQDyYPbNFs+8jz9PiYehN/BsJsoRQHMCRATtcre54hVjhrWLove8G3N+jJ5i1rSeOdhCyr4k+aNG0G+DQrl/SAlas3qeAloS9Um5JjzcpE1UsIKjRjD+SjirVQGyL39BV++1/levnvaI8NOhi2bISU=
- DNS ASK cr##n.co.be
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'