Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",tinoscles install
- %TEMP%\ins1.tmp
- 'sh###n.mo.cx':80
- sh###n.mo.cx/aEpIRBDRKsOSUUH80W/6aqkRVabmcqu+E7zQ8qLamDKGmV0W5M9Oa8Sz2BngQb4s5Si45+257hzJFeaNN7J8FSq6QB/deAws/sNhlmYCDq4=
- sh###n.mo.cx/PNIaArfnjhO86D2sU30hhNtjQ7Km2WhjWUYlO674we29kS0ceUxG0qbOmDbQFhFi5U1pKIDabuHPgBzcJ2qS3e3emM87LcWvKBU9HKGxlvaLf/Z7bjwO4nnenTjGgJIc7toTwLXgjH0myrm0cet3fRrgMF20R6gJqorRVB81oAuHBuG0XLiz2L/yusm4Yn3COBUDwdlg
- DNS ASK sh###n.mo.cx
- ClassName: 'Shell_TrayWnd' WindowName: ''