Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",wajbpvvkptexihg install
- %TEMP%\ins1.tmp
- 'de###gmoe.cz.cc':80
- de###gmoe.cz.cc/TEALZvJWmwZ3ldwsCZr7AObyJEF9WajQo9nW0nrbWcorWh4v41+J4JvW9TBddh1n1QfCsvionbDkPxlcfGBXV5YJu+N55Uo4wnpc2fvcDp0=
- de###gmoe.cz.cc/FDlRFoUFv7WSruFP4Lg7lJDgHVKPIIVXE1+Mr4yLHpvVCD9q84tjcfhagpRqRCHkPZg20TMucHYzzxt0zFNexZYsGMFGVG697RwpOdtlW2W8/pqiEqEaAmkurR8YXD0e/fFtb+1Tg3J5xqzLwW/6unl12W5gTxgRB/RNXtBg4EPMcZSGJMzrDGY5Kp1p9jXB3eiPdEUa
- DNS ASK de###gmoe.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''