Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",jpkzrmiympcno install
- %TEMP%\ins1.tmp
- 'mo###r.cz.cc':80
- mo###r.cz.cc/xNssVBWQGtGjkXw3JaBk2RGuIVD7tuY5jcQtfvnCIHa/viOoA6UjeZprqsVrNPsCjX9TP3Yw0OiB/v+5V1k3HQK5u6cNFO+jDfEnCYjoXuwuPQ==
- mo###r.cz.cc/IpLhYRwFiDvri/ezVkjzEXqtLX12R2fXgFA5LoLQuFTNK1HjA2/dEPGmGDKU+n2j+SuWoyRNzlBsxfJRgdABorFehj+VHZcGrmecfmlX7bVr0kxM5HtC0TS5itn1L+tsMtU1szCVlYvIMkBCGUYhDL/dVoouSh/67KhUrBj/ORdeQZvDutyo/nQ3HpMUomr2Rj0RtzDV4X4=
- DNS ASK mo###r.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''