Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",metklqbmjuf install
- %TEMP%\ins1.tmp
- 'cr###n.cz.cc':80
- cr###n.cz.cc/IBvFjvTMjiEWdVWYnnU4YfQUJL5rZtc1MFTdJn/xRKHgedhpSriq2tEQpZTy4fCXSjMUjNOIf3hrtvFCdI03YHhbqC3r9lJO4cI1ESgGxLKxGw==
- cr###n.cz.cc/PkFUOaOQ+FW31/XRNPh/Vg46ITXpy7rYjqnctkf7OKOIp8bYFeA0yZRsgRUxDGjPPjyDdFSVqY/Vo0RbbRAD0hMQiR6y3iDY7R8tUdpH3J5YpbLVvhHv2+Hc0gnL3ARnCfYGcsBo3wFKh/UptuKFNZoMVKcAN8QtTIhJkAU3wAfUyA3tycfDKgW6WeXJWm5tWsRB7HPe2Nc=
- DNS ASK cr###n.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''