Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",metklqbmjuf install
- %TEMP%\ins1.tmp
- 'sa###lmon.cz.cc':80
- sa###lmon.cz.cc/hQcqPpckK7SG9zl9B5Yu0YY+uiS00//snTMB1mpc0fDjYO5DZ6SzefJ99nA8VwCEzKKrTYQ3LyqjzNsab81b7zLjlpVPSwa9hyTRWUtYOzJjOQ==
- sa###lmon.cz.cc/YzosowDrfRU/H10WHy9fhr62ohOh28i7d8HeeWaEikimCzbQvIJR3Kk+eV2pad91tj9bLQ6+/n3ZY6op0aXyNffQbAqP6Rx3NuWsXrAt3KFhIOBQhaNDcqYKP+DRjykyJW3/E/y/ODpNIxD47bDQTXN8NL+KWxNw/OXE9T/635MJh1F18wKkER2FHFHahPoV+2RRaqV7a7E=
- DNS ASK sa###lmon.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''