Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",fzxivwzqk install
- %TEMP%\ins1.tmp
- 'sc###o.ce.ms':80
- sc###o.ce.ms/gaUhoaVhAmkE55hXvcDe7ZMJoXWBFw11qtRPh/K3k85nKLwbRswrs/2eUOrowwbe+keVn7N764HUOYYNK4goAeQckQ2DRvMlDn0yEZJpqDTQxw==
- sc###o.ce.ms/BviWAGjviJcSrw5cr6K3nTbtM6Ob/B8s9/AkNI4UCNuYGxHcBLXDtqcT+UehqEafi5mjCMBfJHCYDiS6ux6u8fIwxiIMZxtCcAYlL8t5jeikuASSQBnE7rKSUtxiZJzkqjspuRauYDhA6ZmFArEZlpY6RpISVNHYRXAroi4c2OXaERoUiU7hr6WWe//MU1OjGSLmkeY5NCs=
- DNS ASK sc###o.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''