Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",ozauswrvnug install
- %TEMP%\ins1.tmp
- 'th###leo.ce.ms':80
- th###leo.ce.ms/jyMyivWQA3Kusnd2wdfVExTD9jxI1IirRk+QI6nq5rH9ZLizNx+DBSLqWDRww0LwbrpNMpDVmXHTUF7Cx2fw28aT1hf4JkD3+cs11pXTJCSZng==
- th###leo.ce.ms/WfiksmcwICjCKFCXX9r7/Mi1WdI1trCRk76gMSlpTdmTHcVqdMK4KJPUrCYrveXA/GvVYiItPQcYQANKcD9Uf+yzm0+5ccNnaPNCw/1rbNIt/JnWIfsoYseEG9sgkuWo9BBRZdqa/ONVOZj1TInWHTj8Sm/tTbEVp9879oMahCWL+kSLskJb1JNE9HGgPyK67vOz/As4WEA=
- DNS ASK th###leo.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''