Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",uhqnclittvzeg install
- %TEMP%\ins1.tmp
- 'ke##.cz.cc':80
- ke##.cz.cc/yqmujwhexQJMKWG23nFgtmEBT3yGamhs/v+li1eQhWx6DNDztdQJYu1x/PJV6bvRCTWCPV2cdBXkj7mIacBWDBmM3dLqxkb4/jYUR/WeBuM=
- ke##.cz.cc/mUVzvPsLJiwCb+NtmqbHtzB9bFDlmNYZ9puczYzxMeSo3xs8t9UjL1uMizQCigFP6GrPFLBHTiJEajrUoYOyUWVaID1E/HvSWS9hBKChEdrSukmyBUX5VoRvvAENmEwD8MIbhfAcWvYRUwFoLThE4kCJHmlyjtlEC5cRDx5oJb536UN6gaiiYAz5vjrSkyMWJe1FeSwE
- DNS ASK ke##.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''