Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",tuhunasndc install
- %TEMP%\ins1.tmp
- 'ko###moge.cz.cc':80
- ko###moge.cz.cc/bsZQvwzoU188BZJH+b+TDHELeCQfdr60tIgoUVLFmUzXGL9GGFlnEoiqhJCxvnu5nWkcO4yQ/iWFmbcVSXB3dyv3FQQy0lbbVJx1PPkuckvPGA==
- ko###moge.cz.cc/zsSoIzCHR9xfkYnV0kovok/l35wIq+0mL2f3Lct5eAHi6gtJXOUwmRf3pA+plCTSNYknR3VaSLJw5ePu3DGllocgfGUr+V2VWoM3JAM3s0WmfXRd1idxH2NF/9I4N7wMVj7WoKFcu9vH2TxdSd6h46dr4ROsCWzKrXwxM3LeRkVQDXKGPPS+LWW+SoVnpUcRh8FHLO4Ngzs=
- DNS ASK ko###moge.cz.cc
- '<IP-адрес в локальной сети>':1037
- ClassName: 'Shell_TrayWnd' WindowName: ''