Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",pyhkaqgoudave install
- %TEMP%\ins1.tmp
- 'lo###es.cz.cc':80
- lo###es.cz.cc/qClPKMgYdnBXLB3WJA0lUmwdBl37GhCoeV14NONGbOzmc4KhohI6uEGZ8Ur0HfMmrEeYmUAJLLphATFQarlrGyzGF1Rj6eIec/MOAWyh7z2jpg==
- lo###es.cz.cc/LXtAFgKuKj2lWBisH8HP5rkI72xoH7ZwMHl0KLuNRUFvUugCtKcKDPrDoa4i3DdKVDrEu6iUih7RyI1BHrONTnOSXAA4/llXGyjC0NKDQq3VGTRljRnpWM2tT+NBX4FpElrp+n54jm/+/AzeXdyhATfD0efdAptxZrNMXBh6sCLm5oLuHIP+do2VsJzj6aEK+GQbGPDyVxo=
- DNS ASK lo###es.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''