Technical Information
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",hxoueddk install
- %TEMP%\ins1.tmp
- 'nm##y.cz.cc':80
- nm##y.cz.cc/yFuZDllHb+Qi4k1OyC3SQ/o3JTuGNrFhdT0rvHLJvPxeYc676fkFZ9B7jMvr4sSfoQgMNWzAxwZGO0FXkVFsvWQfg0oF7V8h4r1SDLVHwzL+Nw==
- nm##y.cz.cc/IUPtqqEe/gvhfSBuZC5QZpj+i7GEs/DBs1BLova48Ecd+TkcWDA12DTAxY0Xw51vAMDXt5LuFYaQU5mZHSgy+uE3YddCa9cYrtfCSrKaUXv62RlCym6TNAa/EfQ/UgLJ56ekbbJtLxCmYqVROa37AmB+Rl1abCBpR6PClP8G4+Q0bwqriSnuTgntVFpt+QB3yLKi+Mdyrsc=
- DNS ASK nm##y.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''