Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",sjtoxdegmwkach install
- %TEMP%\ins1.tmp
- 'gc###n.cz.cc':80
- gc###n.cz.cc/GXPnRzWWLeiTfqo4ms5iiOgOdD5XjSxmZFqGgAyKIDftuKVrQ0ORCppjmrR5ZI5dsw58Bts1bVXtpzVZKEl+DvgS6vAmF2hlMh/GUl0uuP4=
- gc###n.cz.cc/PqqIAMlyVJ7e3fwJMnCMqJfZ9KIVsmCHDeppno7G4SsRjg0KBfZaIpRqQA9Adcd4Lm8V7zzZvHUcpSXzGIHPmM7b19Z4VWtmuKHYWS+f1qxArjgaQU0HYE3p0/W2JOq1xdGDgQb0iKy9XdPWClPYFrSeuaOLSCi+j7w6wY457jvB3ejYHp0Y7LkD7nx4Oc+PtnaDKxRo
- DNS ASK gc###n.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''