Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",xncujvchq install
- %TEMP%\ins1.tmp
- 'os###er.co.be':80
- os###er.co.be/DsgdvmrzH/3K2ecijOt2SqQKjZ1oZWuOPAPBB6ajSf4e/f4InAWCZ85mLaNGjdZQ+6J6ygqR5Cq3/0hK6v/u0W6+Zqw+W7wJ95vH20nR5/4=
- os###er.co.be/pogTOhLF078uQP6JUp9TyohBRaPVvWIHMTC6BZp5zvlG26D7jPAw7pgmbL6u1aLIcA3ZSteLRBCiYDqvmvSiWMg1ASlq65p18dt0ZWbKSfIbMWbMA5nAKnS8m6eTM2+MijSiWLzNczDQmGl5qcBTHIP+hcTwZ/FBL6Q9TAOCqFfW+mfqsMLFhR/dzNig2UCIiZhDxwpg
- DNS ASK os###er.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''