Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",jzzcmhvu install
- %TEMP%\ins1.tmp
- 'mo###ns.ce.ms':80
- mo###ns.ce.ms/ciUEUygfg7fSTce6T67YUcMRBIiBvfM24ImBxaqewr9R+59H2+SyRhnzyHDuz8EZ7nVNO5gqZT4SgTWXoW0gHjyqnD5zfa/PRFLu+7gwoREWTQ==
- mo###ns.ce.ms/pFnVeJGElgfGuLQ4knndr7WmPHvv4cPh+xsg7CPtOlS83TifNP5A7het/BDxvsJyQrXoh5fqoU0fiK/rcg0vuFXhfNN4liGeeMKVLkKThEcFzDuRxe+ZrXKIuWHKeXPFRaOzDNso9GXIlsA2fWVMGE7wDpsSsfMxCUR8FR7a3WOxUuAJNFveSpAdvIcCdp2wBbTA8u55TEU=
- DNS ASK mo###ns.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''