Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",neywywnrbstt install
- %TEMP%\ins1.tmp
- 'pe#.cz.cc':80
- pe#.cz.cc/ICdVIjHnQQl8LNroWrkIwlS6ldKFboGo86roaUsjP+Mkt/Q9URb4CcThfxBckUeoG84xL4Vf63yhHFoP7wG00D3OBGSyuYuCQcXsp0dOK0m8Xg==
- pe#.cz.cc/TTIxLWBjQ921x2H/aT0c7njQiNV+Tge7SMJxpsjTRLGB1nXs+aQ8VTJoVvMu0TfQ0deqys3btMvd4dY5KdZJsT7kMWiru7QhYlOkFWLKUT6t2woKdqQpDKuZrs5kxadjNEeX1qL0TqGCua4DfZQ5YO3Kz6Z0582SmN5a9VIBL8VqadOOlsE9mi6P5SKfpwVGurcjJopdaZs=
- DNS ASK pe#.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''