Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",wimettskjsswbkd install
- %TEMP%\ins1.tmp
- 'po###ocer.cz.cc':80
- po###ocer.cz.cc/HNQUwSRmz/+9/2yzsAn11k5oCEVoRd2XrO4msQnwqoqtoH8XYw06ulRI+6wvRGoZrbgm8BtNbT2u8F3fGp3Uq0vUY3HoP7RCIsSqDEBI6Ec=
- po###ocer.cz.cc/LsvOWSYtLb8kEMI+Ru5BlojPPEpgkQn7sLUy0WZTWeJSEbtPdcmKN+bK2jeu7SIFH5kWXhHoWy1l6Qv/v44yvNbhUZyvLlX43KVWOVJhlkytVkiw5W/PaTIePBQ3iHNXrkJncP6dfgYPnbc6bDzBdW8XcwPA0BIG/7Az5tcYSNXYad/MPeEi5iw8PPfV3hWKwmBkwi22
- DNS ASK po###ocer.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''