Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",usieawrcyq install
- %TEMP%\ins1.tmp
- 'le###r.cz.cc':80
- le###r.cz.cc/NpLnEArqRIjoOjhpvtNNTamy/yIlsAJMxZUeY+i4vXEbVQVP7tXMIKgKY3ad3inmywMbkoGrIsOBlUH2ea7r1FNXyld5lZj/LeS/FZI1Wnc=
- le###r.cz.cc/WFarMsSr/tvtWQf3LKVvLMiLqzbwlHjIz+8hzFaDjJT7cAirX49O39iLXm8Kg/mZeMV8kHW75v8ETXRvMoajhDeAiCMdmv/i1pky67xDYvpxpApzdWOwZWk+CpJ9I9+2bW/kJS3yeS8bOvjc8oM1MJfIQzB6HwdyxDiFMYcNj9fxHV8IKRqc+A7jTlVEq3u6i2LnRcPF
- DNS ASK le###r.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''