Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",fwfgjvccfna install
- %TEMP%\ins1.tmp
- 'cm###e.cz.cc':80
- cm###e.cz.cc/goQeywDd0NIo8O7qCZmy2iSJsrDo0O72eYBHXvGWd/vfubnx/6Q7LHSDWyxW4QkFQqPoP32B1D53AyE3ltuAUy4UBMCUY54pRTPZyb4/rRlWTA==
- cm###e.cz.cc/ZDjhRwHrtghVE/CogHdv/LUeTO3pLR0UMHqQZQOSPQ8eiGVv2gqWZ4DLJ4vT01UJ1i6Hjg9Tt7Wcfo5UBQ7KCrNJRPlGw8hsQjE2V/g6PDnIfULkK7e0RKNSZlg16HqQU9tfD+EepHwDZExYoOKh3v8Tj4Oww3/ZgqJHz+yQ0WhIFXa4yq5MhIFMdLQtJmhX2+nLEDOLBls=
- DNS ASK cm###e.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''