Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",ttreyijrpjflxej install
- %TEMP%\ins1.tmp
- 'mo####dele.ce.ms':80
- mo####dele.ce.ms/yAvLCqhs+YHP0JKh9Ct72LxFAQl39F+FS4G6djIhH4eXxhJRYkM/UeH3pI/HRL3+l5Wn3qqeF6eH+WV+bS1cYjXzPmbQqov5epps5zNuNtfY+A==
- mo####dele.ce.ms/PbwxYYMJnKQuraQ2IjrQd22u+FtqG2RGaIVrrMJLCZkT6/8XxNeB+2v3Gh6wJolKPFe3ue5M8Zsmmmd/bgcsUhEoDYTIyctEuTPttql4v/VS5Hptex4R7GZPBeI0CmCpIxpWjP9RiCadSb3I6w73nnbyehK4mrNq9jHK7Lr4iQM3cWdK1Dc3M2pc2/Jk6ZH70KQ1U3xpaus=
- DNS ASK mo####dele.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''