Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",tbjcuymnbt install
- %TEMP%\ins1.tmp
- 'ho###t.cz.cc':80
- ho###t.cz.cc/BLSkfZmgWPlJrQlGhnIhjvUUvGSxX0Eb3C1EoGpeYLi9THCvPwu3Al8Ae6pjeS61SW0q6r87QQ3fdJSaxzhmth/TgI3kwX8fLBdxpxn7hDipuw==
- ho###t.cz.cc/DNhnWZMKNfiojZGyTttlT+WcUY/Z8ivU2EQI6UB6eMFZFWmpcm4Uxtp+AsJR5FUJyvvTT+afvuRymjzPSXlGZwAIuoNBbNZNHwBdZZq7/GNLBcfyHb/F4suQ3ACr1f6zMTQXjk15fa2JAK769gdmyXiWJIahO8WqIgmbxV6BSy+5R60A51vSK6fLEEmiGauuChyKOMJXOZs=
- DNS ASK ho###t.cz.cc
- '<IP-адрес в локальной сети>':1033
- ClassName: 'Shell_TrayWnd' WindowName: ''