Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gzqolmkwup install
- %TEMP%\ins1.tmp
- 'mo###e.ce.ms':80
- mo###e.ce.ms/caIsNnXStTLa3w+3zWe2OVMA5qjCDFFz5HG6qksU13rPzpu2mQzQKWCyVCDycnGVmPrEfkg7MpCj8lbe3n052O1StEimH3KC4ZGbVnHOe9C0Eg==
- mo###e.ce.ms/IRUOavmkZ13eg2uK/yCi0xEHTtwi2s6SGkHQisdVEi4VEKYhq/uhsR0gOD6U9eqjsaweyIRF2ZlqnixPVYUR9oXeuVE8V5vlawdYA12RUaIgyLof1zhzbfHYHlR4pMS1A4R1vPCoL9Y4YyOSdSecyilfj36rHMBU9DxhPEAh41BC+GEB1qFPUxMG4nGyKDu+w3KH9C9mWeY=
- DNS ASK mo###e.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''