Техническая информация
- '<SYSTEM32>\rundll32.exe' "%TEMP%\ins1.tmp",giirthzptegyz install
- %TEMP%\ins1.tmp
- 'sa###rt.cz.cc':80
- sa###rt.cz.cc/DrZaobpCTymao+p23Yt5pW5e86Hf8fNsYIhxq3jB4Apd9RvTSqPgR+Fuq09sSBTuL65BLAO2FPnwjK1+BYYHKFL5O0Qmqju9scVHVhHaVAn2fg==
- sa###rt.cz.cc/aoMQXIOc7mypJoN/Lr0Lw+fBLSxCiUf5WJGckwNyMkcxXirtFupNnK2PIvxryyOk2xPSRC/OAAZDBaihKsogpp2HsYDem2KlPjz65kHdWKsZmtrh4pFdzM9q7U6v9iBJvwfHf6vlhDIeJFhGwxAkGnc6Qek2v3RudD5LBo6i2UZ3H6gxHqW8om6JF85goLFDTLeJV4OijHo=
- DNS ASK sa###rt.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'