Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",metklqbmjuf install
- %TEMP%\ins1.tmp
- 'ch##.cz.cc':80
- ch##.cz.cc/QVgKtyzPecZwWhXF20Hv7U4C0atPMlF2O/m3dE4HaGOL6GYLItyderCiof4z64HfQx0e1/R9Ln+brz/qw0rHusPQU6G+5/wlzsbTxL+f6pd46Q==
- ch##.cz.cc/WeYGStvMdXIVCS7HJMexewg7OlL6fOxqi6JygRzDIbGfcmt4mBllV/tnT6+hcaLPLliCCU8tr0k0rD26rg1uESf4qoubLiDtXIrp+2pNyYZtTJVunQQ/UYeuXI7c99QI5oOHXYBB8oBKO2CLe/hymxSApmWUA43B8E/sKGmLRnadssEHV4n0MH1eJ8qMkidJZ/DulAQZyaY=
- DNS ASK ch##.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''