Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",mkpknlao install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\jwep8JaYqclzaORt43sivWhjM7BQmnkDElt0ycC2fZc82LLdYsIrDgI+cSqos7HrVgNUOR0Lg9PJad5vaDV2piGg==[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\pgTsBDDSKOHZw3Aug4Ax3RHP+uIaUrgs4=[1]
- 'ko###r.cz.cc':80
- 'localhost':1036
- ko###r.cz.cc/PHegvaASwBCl+8YOj0Mjm/jwep8JaYqclzaORt43sivWhjM7BQmnkDElt0ycC2fZc82LLdYsIrDgI+cSqos7HrVgNUOR0Lg9PJad5vaDV2piGg==
- ko###r.cz.cc/lMNHuFagl+Gg/G6c/AASlX9pdz+dI6TaTCJt3l1i3HhHhaQU0AwUGyh1McJVGCKDGmOUOUq8Ti1qGYlxUmGTLYaY6MZirVKtJKArVSw8ZKb5zjQkxTy9mt1C0XkUcwW7TXGcNu3H+jY+Ku5YS07l1O5yl+wR/iyiL+aZnbTjs/pgTsBDDSKOHZw3Aug4Ax3RHP+uIaUrgs4=
- DNS ASK ko###r.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''