Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",kqmryujwnsi install
- %TEMP%\ins1.tmp
- 'jo##.ce.ms':80
- jo##.ce.ms/CeVcxwwT+cBQqlUwdaxKuHB4jakX1cHayUmcdlj3RoUipnd/C3sLHnI0SpQUITWIlbH4bSnCgy+Ad0p2U3orQSEefd0Eh3AsBjozw8JQIZzRAQ==
- jo##.ce.ms/yyRyXDNOzf4zM7pTCqVoMWDfN9VEMnfB0H4J1/jDtfcz1wW/TtBbRWLm0uKiaQIqJQBFH+60jQhpw+87ltiaV/cIwgykEaffOXWDP/C1Xeoozvy/L62+XW5RSoPA9tz6LRJyc8JpqWBXczAzHMLYhmYkibb8K1cOCaDwGIm63Kn2tZ1EuCN5gDh3OORK0O73Pgzq1XSAktY=
- DNS ASK jo##.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''