Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",hqizgdstcrpw install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\kb0WNOF81k5S5wfD+r0pn+xeFRU7mEjfRZ+x+A4RX2jOl4xT410mA==[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\KMSSP66Voyc8Jrb6UTEECQ=[1]
- 'pm###eles.cz.cc':80
- 'localhost':1035
- pm###eles.cz.cc/ldhlkTzHdfrQxd4t2aQPZaJgSmtZOGJFZai8vsmwM1mU3jZ7Dgeerl4a/kb0WNOF81k5S5wfD+r0pn+xeFRU7mEjfRZ+x+A4RX2jOl4xT410mA==
- pm###eles.cz.cc/RjXrjQdEtSyge+RmXSu4Jwu6C3uYYUecuzQi1hvTN59LRhjIUpUZ3NB8YkH1tBrV9p4teXfQoB23ugbCLbDH+ZmCz0ftYlnWLylfieioGYolRrXv09uf+qge36/hKVpkiPa6av57g5zloD8BCzMjKEoibqYDVOP7Poez4eGAw2/f4PIlbzTC/KMSSP66Voyc8Jrb6UTEECQ=
- DNS ASK pm###eles.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''