Техническая информация
- '<SYSTEM32>\rundll32.exe' "%TEMP%\ins1.tmp",xqjtifcdiwi install
- %TEMP%\ins1.tmp
- 'no###ro.cz.cc':80
- no###ro.cz.cc/mQQJIVVB0Wo8LmrdDmATwNy0FZvrrcDGEoJbCDCsRFaOqPGLQ6oIVZft3v3jhA/yRw8he5F1vQRIo/YC96rpOnIwtmpwu+XJyKhhOYlPgYTv+g==
- no###ro.cz.cc/pqAuVZFUQIpnK0LId6GV4qq2u5NkmCRpJCaL+kCRe75LjB5QOp2S3u+asUcLZngouEHvq7QR6ghTiuBnEDA0h9IqP9Bm/c38Cj/27cueMRLIoS3ybpioF2wseki7Sw1Dt3ifOKqV6fOUXPfpK/uVK1OVa5ad5u9NEBW1UaiX3MBnT+xs8NepzrVIdiKdUf5RsKtGvPCOwt4=
- DNS ASK no###ro.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''