Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",tbjcuymnbt install
- %TEMP%\ins1.tmp
- 'rc####sarger.cz.cc':80
- rc####sarger.cz.cc/DpQYoAuGnlIntgAEuR5wBLD6tpu5U7PQGHaFtTt5XHt7/i8+7GyVCFnyisRkeilqhhr7PUtSZ4vOg40emd3KyJjbMZ/Db97HcKgoHsPuwdFiAQ==
- rc####sarger.cz.cc/pPSWoHzsOWswslL4G6BzSV0nafZ3/6ihCCE920rPWcrCxWe12ZHGy20rQOTr2CAh55ACRy3XUUCqWjzsGy4XtAuBB/Jh6+VGGDGkgrkw4ZB2pTumeA/AkOhfO9w3hOk8IeI5F7rAnzimjBOzrqfHDYajbaNRV/zOqQaPmcWg1Qj8hQqE2qnewgS7uz9dIHUG5IbOY0ZtjPY=
- DNS ASK rc####sarger.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''