Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",zhslfddbh install
- %TEMP%\ins1.tmp
- 'ed##.cz.cc':80
- ed##.cz.cc/LJTrGSTKQksQrj50Du/4BD4ogkgHv4knnaGOFf3AiGdkSS9p36fwlmDRZ5LRJmhawmnQQYWm/11LcMMUDwfUMwHAaYdcBx0xw59mzxxk2v0=
- ed##.cz.cc/FwmmMbZs+11a2oHVftbEaCdK8orzTgq3v/TM6pxVJntI/NFX2YRxKX16VDjPnlUwiyFpvjiLdl10X6iqjmfBIlupsBpIsZNGgVh7gjsAh97wxmbaick7opOXFD+lw1zAfb7KnfA/BmgqjVJJHa+JeWvFaHEKZqzEAZzD4Ui7RLoLpbQYf7uC8ohZQabX+kWL2+U0repr
- DNS ASK ed##.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''