Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",zubwdnzeg install worker
- %TEMP%\ins1.tmp
- 'ho###er.cz.cc':80
- ho###er.cz.cc/vacdrpSFZITim0+A+TzjRT28nSd1TNqYiOc0Dib9yX0LqiwZ+DJAi3Ner1E1SqjMed+u7gzNWoQJpP2XiVsgNVGS1/Nn4FQ4FVmu9v1nPUA=
- ho###er.cz.cc/egkpwnaWQ05KL0uf0g1hHStiVNL12FqOOzo2Qvg4aPCrBn9VV2fadAxvxQ803K3a5axxw5lz6ACjua9SXt4JumVTi0TKNiJXqOBP/evHRYdXmTaA3MYGj6uIWs+nuE6uiu4mGa+LVZTDkJshwgAc8lo1endKd0b5kk53Vjpbtm70NFI87ozINGCUB8TGwQlgk7ctoFrE
- DNS ASK ho###er.cz.cc
- '<IP-адрес в локальной сети>':1033
- ClassName: 'Shell_TrayWnd' WindowName: ''