Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",pyhkaqgoudave install
- %TEMP%\ins1.tmp
- 'sa###ock.cz.cc':80
- sa###ock.cz.cc/FaEXGfXXmp1m+woj/WxnC0HoMGBEILjq0rJbAutdChY2tuzx/Ak4RaR+0kjaYgDeLQ1nW5mkng7Pem2xmSZXU6OE2MuBjKCBOgD2zZrecmD8zA==
- sa###ock.cz.cc/QWtmyPmP+h6T9Wpy3sPLq2JZCNQ5z9LoVivtIFvkMHv9gJJSYJm10JCWy2KqxK6wkQZuBk5xfg5sXs4EZjtCX/8PTPK655AXozU3wvbXzyFMlY+h/iuyX+e2YM27bwzCuUd/OCbQ7QzwezIFcwcoYUZVhVQqSXU2d7u6x5s+akt83Gz8cAQcWa+KfSnXDVTCwlh7sukHmFU=
- DNS ASK sa###ock.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''