Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",hxoueddk install
- %TEMP%\ins1.tmp
- 'nm##y.cz.cc':80
- nm##y.cz.cc/XtuNdtfu2dHSpexCp27XJNr19Zbc39sUuuVcg5qrkBidMaPVeWJnKDGl5rTI2Ksuvu26uQsdbp2/UOf15YQLPsgaZVWsonqYi7Q+BZsbHoXCwg==
- nm##y.cz.cc/fKOXmqQT5Xqs6NME9bugqhPdw1V7enNJwKBCzPunvhEfNhVx4VNt2i2mdyruC9BKdiGiSiaaxF+EWHXzPxCqQzqJ0X6JsiUgwLjoMU4C3JAjDFO3uzAvlM2ggOlvahVJ/xDdREsaT7LbDE7s92aErGjtNowTAXnwxtexCTF2IoG2xSL9FkRnk5svw8ZJBAz9T5QcagNSILs=
- DNS ASK nm##y.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''