Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",ixmhcrfw install
- %TEMP%\ins1.tmp
- 'mo###o.ce.ms':80
- mo###o.ce.ms/RUnHUTUn3Qc9lZxNo1i85d2gXOY3KL5AZKWbByne4VQRsUsXkfXbmxgqIKu+PuQNkozcrlcaKqLLHREWboGkcsZKqJmIsso8wJMU57l8CtpkvQ==
- mo###o.ce.ms/lNDmwtBiwrhXyW/ehtLMb7gDJZMCiCxUXaCBaxhDwT0olfI4Z6ZFlYErq58Dno3JLSMSTqp0XV9/ZG+2V9vZydVhka9udzdh3GLr2EradjzNsxAs1eL+Em3gi9tDkqOfffLk+lxBJc4u0UAck/yXiIBlMqtaebH3Tq6nIyXrnK49hLk3kWnj/FHZjn9+X5wj0Ec8xED2su8=
- DNS ASK mo###o.ce.ms
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''