Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",metklqbmjuf install
- %TEMP%\ins1.tmp
- 'pe###h.cz.cc':80
- pe###h.cz.cc/htViTtCmUO7egEoD1gKdAI5/692jFLPridPoqUyQfj1PJ1wW1fuZMO+n3tXiZXFTWzG0tbHN2g5+dfkCQbSdhwWRjtC7KOxAM/k9pr1h8ih2kQ==
- pe###h.cz.cc/NyeelNobTq2GEseSil4xfbhgZ43A0C0ePCl66SsZXzc97cFsJFGb0F7suZbUCfs5KXbQTXHtUaTmmAO6IZxLLwgKU9RGg2T/3w38T7xBvjV9/Ge1rfgtAJj4DxosxE7ZZd+kNR6ZJn8REt4RjrcF527E3a26rKJOSeIrovzLXe7lz1TIb5m2SrO4E3Z4VALzof8JXtxqKsU=
- DNS ASK pe###h.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''