Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",txmmypskrqjf install
- %TEMP%\ins1.tmp
- 'op###lo.ce.ms':80
- op###lo.ce.ms/tiDXJQJyo5AajHgha97IwWSfsNLLYs8FUZ1ZjxETshBjBk814r8RoxvdW597J8dpKu1c0UiDNCkXAI9K0LjEPkBtPZh0i/BBr9k29wTMv0o=
- op###lo.ce.ms/mbwljLrXxFfuXf3AsdEEBzN5rRUv+8iQRxBt3tGMfB5NZzYZfR9/QM2xdWkfWLY4z7As+7+rS9SCoKclM/hX91Kr7KjCV0/R8akVc6D1Grz6dLE+Be4yO73Gh4PBJKhROA8uxv6x0loCI0qTBnRzi5WHV2Wqtf1oEwQMcU4GxGhLHOy1wsUx4uZaqbLdg1zOnzPyG4Dw
- DNS ASK op###lo.ce.ms
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''