Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",fwfgjvccfna install
- %TEMP%\ins1.tmp
- 'cm###e.cz.cc':80
- cm###e.cz.cc/wLRXahUmI4fLciun7BmzlTUqnAkNJCj5k0uVjOAqDKJe+YXtxXtbB/GfJJY8O8gbmYnpjGz+t9JMoKF/xoGxDEZzOw5zujpmYOAcz16S7bEmmw==
- cm###e.cz.cc/NVnQDhkEfDbcfqpFiv94Hz8O35WZOLULFg6PWSb0iUzrm6OVg7mpsaz/qT3U8jA0AgeAjUsnFWzAgWO6JZ4ORdOW4FcpSjzBSCiumcecH5SVKiPIIs6fShlP3OTYQ1kZA1XJ/uRWeVqHjjaqo2yhM4b7U4tDVGsn478IRp6R4ioerntjDMEqc69burFHxjTH+PL9nVAGCOU=
- DNS ASK cm###e.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''