Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",kqmryujwnsi install
- %TEMP%\ins1.tmp
- 'ro###ck.ce.ms':80
- ro###ck.ce.ms/WTbPAKVK3ig/nn+NM+rSYd5YXR4y+YxOYUhlKCgDkZPAL65TOYM49LBrCNgosrGMYbs67T1cFQhs4tN4yuL8+y/ZA7q52ObkXHSz9DSlPCNIwg==
- ro###ck.ce.ms/LKiwESkmHuny+UpaoUgOtd4kgRR0pL80p1f3Mvix5gsvtvzZH6YXZfL1HDWOT01S2soeq/h5V41gAtofJM+gmREpsC7EgVqKMNWzTpoZt8gFpippZg4PbYk1r6EliBO2PW9GLOy2xta713vqiOCrkqlKpogE8aG8KkOSh22k/0o1SDXhy1+DfLejgRB/Rd14qrMn2Av/oGo=
- DNS ASK ro###ck.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''