Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",fzdbpxpsdcrvtd install
- %TEMP%\ins1.tmp
- 'ho###o.ce.ms':80
- ho###o.ce.ms/rwofpFBgED8pMX9uQk6QYoKMekSPTzsdpgyocYqH3fi1I//s96XiqMkQ4/t8sLXJbTmK2xqj/Mji5IFUrk5IDqfpumvXo3lF7rjlvmwHTrre/g==
- ho###o.ce.ms/oDDAZiwlsxu0BLy1I8YEBqjrv0AYWEVLpaZ86zb7rDnQ/eGpxvKM9GxuDVyftJfB099/UC2U7+wAvG1tUniyTnLnwbXaZVVCuVF4vDuzvEHeB2ILfkXJ7uflu+abXsKLuEWBCCVSqx6NDyhVMBk1j+DPrkQ0AAc1i3/8ppVSaeE6dQ1srrQ46XczxX2wYfWd330PaX29DTk=
- DNS ASK ho###o.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''