Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",wqrwdafokshsm install
- %TEMP%\ins1.tmp
- 'mo###ge.cc.im':80
- mo###ge.cc.im/EuOOSIuPfc4LpG9BfpdrVjhAJ43kq20D2I1dfU3FIUy7WJ+4DgfZZb62VChd5CDO8qOFNN9U3Vl9GspILjGhK0B3Z69ZRoZA8zkXnH2hs98=
- mo###ge.cc.im/oQJeRStJqIeU7uQVMEV70ppYJyXLF/Eox5sYSzXIt3WLzS68FUyQS6cbXhPCadIGj/SKaq5+nd9FdOpYSPy+g5crK4xH9FXet5j6IM4IGYlWPvfHMCPe4N5OHkBpJNQRsbhGqN+ssnCGQfd5Pmyt+OBfuyZ3/fiB74yJB6lkuiG32JxJbczfdvB8axgLBZAv/7baJlBP
- DNS ASK mo###ge.cc.im
- ClassName: 'Shell_TrayWnd' WindowName: ''