Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",jecviefcz install
- %TEMP%\ins1.tmp
- 'gm###mcel.cz.cc':80
- gm###mcel.cz.cc/deIVWymbn24enBPtQCygvNcWvhDokgVwo+3kAdg3X3SCoBHeEMenyV3wcCkDfOTzHSPk50WjrKqS04cQtLB2rkkU26etBmxG+a2J4ifRmQY=
- gm###mcel.cz.cc/nMBGIqTVek9kxmh/WTgxXgpa81EQ6ckKMNgZD8f/EeGFzUKJ/D10/bzpR6uSkmGkQUnaeezbQcINq37tiCAFEAolcqd1+V2jRmiEXIemo4OYJyhi9fPkw1OO6RJWhoJQsPym0HXmZSUbUr8hfb149xd66ZfFxF30JyjnVrmARmzut//hlPAPre87cvikfrFbIV3WWbiP
- DNS ASK gm###mcel.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''