Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",mwnpicox install
- %TEMP%\ins1.tmp
- 'sl###r.cz.cc':80
- sl###r.cz.cc/itNSGYmNaJkT6QRZmM3OJYKOI5n/Zun+EDL486jlvyKaSrELoJOngdz6O6PZLzAV6SOQDtOIKMUWWFLl6+hJQcGFGXUU+sjgaXIqPMJFB8FEPQ==
- sl###r.cz.cc/WYHGxrjVp9egLyglGnZBcbikVRT7nlajBC3x+XaPvxY/jlW2T45WEzxwnxkufCN791xF5XGdzw4cVHYaigaJpUG9hxezeTF8IfumJX1BrXsultwQqBX076K9UVFO9/jtxP9mt0BaWafORY/l2keFKF54Mymo4ekQ4PT0Z7X+SZ7rL2PVE5y/CwjDQ9/eiNNjqX3t1ZAZd90=
- DNS ASK sl###r.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''