Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",metklqbmjuf install
- %TEMP%\ins1.tmp
- 'lo##y.cz.cc':80
- lo##y.cz.cc/jBDTWhAcRXLIB90pe3h1rx4yXoF/sxwhe2/m1N0K3HwkCFRMSkqG1uD1gyoRLahtIAyd+Mye2ML1TAl/YRrk6G3vRaVKsWTPTDliUnxG05rXGw==
- lo##y.cz.cc/FRdhzVqfAKnVBenYLG6zQk7+Rq1oqwhjK89S1gXGgIAHECi0xQH/nNEhzJ9khd8Iu5Jxg+EX8BV3AMzS6lNtj2VPgHFdBsUdXP5SaIXVgwFOpc+zEu3rVJYjfl8Adb58GF5ucLsvgGnn35JyRHsJQd9Vg8rKFfTDFXzXuBjPWwHvP1rePXno9dJg3ItaMm/yQWDKwMptArg=
- DNS ASK lo##y.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''