Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",ykicewwggsiupqv install
- %TEMP%\ins1.tmp
- 'cr###ngs.mo.cx':80
- cr###ngs.mo.cx/LZhqvxIiQYlcdccnIiRpXtFbbwHtSglhQqsFru/FXkoICDdmL2N0LhEc6IpFWf1+21UUrZyJR+lEC7DmC3e2G/fuKjpv6f0ZgN5xy0qjNss=
- cr###ngs.mo.cx/cUtIYeBxw8n+/8/NCQ2OtApqqG3uXmWJAusCM/ocD0tcuhYMLNQYq5g7d5+VzY9JFFeVhEvwobsQ/GeXzUZM9Pyt+iOUysNI48Tiqqcv8sfJ/EprVqnVOE34Wpf2obDV9z9v6ghlrO1TRiRSeBW6fMPuqs7gJpq6KAlK64nnMJQ+n42VdbkPulDxnIELZBPOrIKHHcQD
- DNS ASK cr###ngs.mo.cx
- ClassName: 'Shell_TrayWnd' WindowName: ''