Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",buszrfapaddecka install
- %TEMP%\ins1.tmp
- 'sg###os.cz.cc':80
- sg###os.cz.cc/FFnPUVAzprSOiFZRzrSofFicRL8S3no76P9wLqoRBR6xkAavML0lpxJxNfZoOnJKWZuDIgMuS76vl9flqcSZWutOdxuamgvNM07OiwB+i7KYUA==
- sg###os.cz.cc/fbINFhESgxucOmH0fJr4k3yRRdDdHx5BnQHr6yWpf0dD+mgsYOoKH88MUP4C2zbxOXfb6ylYTzPzU68OXP3FQTadxuwOvpOXNZg1TAb/5tzupiI63uwk2cSA7oHrIabD0ufEOE3UgeemvwuuSblYsVv7xmtbLZntwNht+xnPSz8ACJBxkchQ1e9JkXO/EBuNupNzTwH3eV8=
- DNS ASK sg###os.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''