Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",pyhkaqgoudave install
- %TEMP%\ins1.tmp
- 'le##n.cz.cc':80
- le##n.cz.cc/eqtskuMXDSNscD1aPazZj7F3k3ugBWlqKPs4SyBHDj9IcWaT61e2IDOzchd094MflATB3/hd7SwQRzNbXxZtvY9sSt/YUoTyzoPK+CECLyJZFg==
- le##n.cz.cc/CpwKMfRRw1IX2JhYH5LjDOhvfIo5TisgxXM284eGWjr4lpIu635vWeDmtpqq0G8xSU/Z52NP6gVoq5kXCtPcQWz5Pe42pnvGwtDZbVM1cjnObIC/p3RAOw4WeXD75/MNp+jlwcyeNyaLry86y4xlvM2c+RbyZwsBAIRlm9Rr1kMRE25+3DkP9oHlW9oJm+asoY3qkjvzdso=
- DNS ASK le##n.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''