Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",metklqbmjuf install
- %TEMP%\ins1.tmp
- 'on###s.cz.cc':80
- on###s.cz.cc/lSSZRIvSfOhE08MXfLfGrnKQ6b0gKluHoswPCjKKnUFc55MvJSSiR8MAFmSCwhsDV9czN2to8qp3sZrZVx+0kiUDM3yPpa/kf2e0K6iOjTlBKQ==
- on###s.cz.cc/YTCJTCCgDarZ/lsJuzKv4AhKYbfonwA9MFVT6ZQVth5pwzx1WefcOBUWaVc3A5+06efuUQfEjN+EOlke7OZ5pEwQvw+2RkuDrnhhGDGEGuStXbDLzAzNveZnyXUzcT0wl+a6132e+v22qvDeNEhntsTbdISNDYEw50CGlx8q8OMSA2VdrKJDkx+ccTHHFXkO3t3EdJgtQ74=
- DNS ASK on###s.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''