Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",jufwyscuoumnb install
- %TEMP%\ins1.tmp
- 'jo###ocz.ce.ms':80
- jo###ocz.ce.ms/NtPdDeJKthPCBiTbXboEfC13HA8kVNIkPQtCHkrjGphHXWDWAuOnLvDZsXRg0TumOzT8aMsFAxCPiEvNE2Eo6amOWyqecddGzI+g6/zlG6STLw==
- jo###ocz.ce.ms/TGVbhHPu1WYkPmgWliGcxwfdUHSA2+Jo218oLJC3hD1tpyoDzbq0NNZPErEXwJYLJOk/TiBYbZ8Enx56g+4i+NZ0cV9fTtBr9FZItLTjG9zzW5MkkZFcRhESdCj0W5YKrktumPdyYy2xs0lGlGwO6vGNJZ7ueQqf9qcmVEMgXqFR7ytuqxYvv80TgPfGI95UBI2JwmtjCbfJPunm7iU=
- DNS ASK jo###ocz.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''