Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gfycsostcyr install
- %TEMP%\ins1.tmp
- 'st###le.cz.cc':80
- st###le.cz.cc/FcIAOacQWOZHwnuXt1ZrW+evNDxJ6U8+eJwAhraoEMciw/avR/4HNf76gAMQK1LS8NalLguliET5L64YELQthMm7+JDsR2zPNTlimzdZWds=
- st###le.cz.cc/LVTElEeBhpM2SX29r0V6cmTMhV92+3i3lqX89wzb+lBacd1Pk6YnABrOJRVtDk0rR7cJdHPflfbwzQaitqFPZ1fCukjKa7uD6MPAtP9LEWJ+eHUfeqP4UMliSX6n8eSHL9yeyKMsL8Hwu65AIqefKbWUD3/ZWm9lbyEhj3NxFAtYgjlYr/zfoyG3FzSAZLKqmYU0nmZJ
- DNS ASK st###le.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''