Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",neywywnrbstt install
- %TEMP%\ins1.tmp
- 'sc###sler.cz.cc':80
- sc###sler.cz.cc/SvwxptJpillrGt00jnDRSb0RH+RpKzmQwb0z+wanztbVsQgKfPfduhKq1WmG0BuDisfWlRy2jplCr/z19ieuLO73Hs3HVkkf0Mdy09CXFezTuQ==
- sc###sler.cz.cc/bECXtUzMlJzW2SnG5k4rEd2ekkXHD+Bv4+IQJ7Srq2UH/qlfOL2oGL3gc0eKgJ68hOZkcgFSCdt7x+VrLsEH9O4Iv8uOZysSL9xpLm/F46CkJmhCayzqdD5d/GtOp94i9t4Jl9MmMgg2OEFluPelzqZ4/8L8hPPTST6aog5r7mxWFS0fZXYAvLIASNyPSFm+h761QBzma8Q=
- DNS ASK sc###sler.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''