Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",mwnpicox install
- %TEMP%\ins1.tmp
- 'sl###r.cz.cc':80
- sl###r.cz.cc/aTqfsLZK86ugUQKfRBab0EPVVz6y+81jAvPp71B8c4RBbQcbVt4Thvt6Z5uGT5F7r2eoH1jKPt5TE/hkI8koN4DQCEe2pjgfg5+iZqQgHJ0n/g==
- sl###r.cz.cc/hEcWGIouF06ccCHDJpYpyvjjcu7D5AjIpXqA8YDhtKzOY8gfXIJAHuU7ts49A7Yukv8pon09AUeuN78gdUiDuP9zwPttrntJBWH1jRA8PchUxdINTR7NC1TMmcD4K1tsvZ1pWQpluurGFthLty1iKEZ4jZJR7eynImsMphHAShut+kx5IwuWD45nKH8WIU0ly5RfirP7Iyk=
- DNS ASK sl###r.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''