Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",urhoxbwpijkrg install
- %TEMP%\ins1.tmp
- 'do###ge.cc.im':80
- do###ge.cc.im/uhPXxETGBtXllHow9Esb3Ktr4RMeif7Ndu2t0R1e4A9YZPfUVwpcZImZ6TRdXmfXUpnVjHD430GIu3qaKHKrDQn6+Bu/3n375lLQ4bnNNgIvtA==
- do###ge.cc.im/TFVVxXmvSoPPJJS/A3BVwd/8l5mmTQbsFKk/C8z4hiTP5Oxumy0OiQY3myl4FhlmzV/Aj3NE6C15OtYeXibvU6dji7OAu44aPuVo0ZrGrhzUY5xuWDZARn5D/PZbe1muc7HG27kzR6WNEFkgV/wFV3LyZOqNwB7k6rtW2f/zPCO9ky1QC22cfp6Gi/QPX2MTVr5pc1d3NaM=
- DNS ASK do###ge.cc.im
- ClassName: 'Shell_TrayWnd' WindowName: ''