Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",metklqbmjuf install
- <Полный путь к вирусу>
- %TEMP%\ins1.tmp
- 'wg##o.cz.cc':80
- wg##o.cz.cc/KFECHiEVra8T7PkbsRmXm1wyIMbm4lsqRdULIwlD025QxwaWCG2qC214BFpPGWipaqD38MsLGTSsZQp4MeLNDl0Z0KPoRT5k3ps0+A5UidXU+Q==
- wg##o.cz.cc/QKehRHLU4eRy0BhCasp3lffyvwoWKkiHPK+9QJxEhVW5e9f9+yXFt/UjWXAPHxSVKNZfTZKK7sm1AgORjx2b+TGsaohO0W3VgMRjy7Q7/hWsntlYJHVZj6ZS67umZTHu7SjPDWkOH3ayn09mk6E2KHUkB6k3oQdDKWqQJdociuGcINfZUsZOnORMJSIbKAnyu9sM3xqLtmU=
- DNS ASK wg##o.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''