Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",ykicewwggsiupqv install
- %TEMP%\ins1.tmp
- 'kr##e.mo.cx':80
- kr##e.mo.cx/McTpmvKpZnOVAmB3SYehs1tO4JUbpsSSHQ/d79mqyerpmsvwyJ596K1va8jD42RH21yiJGr8TC7co1rwU4Ga8MDcMCzrVUDzPbP0Acd2T/o=
- kr##e.mo.cx/IowuuBWIfc4E1GA2wwbm65XjbyB5aVqm8gto/HIFHwzeauNu0WC5Aa6/6v88apIGNnN3HpfEp8WOhal5JSehQydNIq5t8knCYGnJNtViEokSiobF3NL3ahK6Ct+J77Qrcp+wcJXaZKorUTvo2VpJUXmBDdLIhLto0Y49vDOgxvf+P96kYTaIML0hJ1vVHaYea53pWwMT
- DNS ASK kr##e.mo.cx
- ClassName: 'Shell_TrayWnd' WindowName: ''