Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",giirthzptegyz install
- %TEMP%\ins1.tmp
- 'sa###rt.cz.cc':80
- sa###rt.cz.cc/NnyAKakRKn+Ew8ZHMh4qdeGypQpPeA8w2TevGJej5Yr7BFWX+5KzAlJD8SS6AB55QQL8BoYs5+uPuzcHdxNPgHJ7qqREoGfE5ZFJPO4cwB3pTg==
- sa###rt.cz.cc/gotCJRcuQ2zg/5H5C4r41Wg/DAf4JCPoWn0BRExbgxHDKvi2dYwMTHGtRy9aD4dZ9M+fJfHV9m5X934eLfwt8BPz7Y7ogzyytAYjKEt8PZU39v8tmWvgxcZCIzxNGPN8mV3h9Ao32qW4gV6CaxkYjIS1MwvFEkRWmfXd0hKzptuNf8EIJbBHYnQpQh458YH4DduqhoIrxdw=
- DNS ASK sa###rt.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''