Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gzqolmkwup install
- %TEMP%\ins1.tmp
- 'mo##e.ce.ms':80
- mo##e.ce.ms/DUUxLDMJtaUiI4o0xAvCjgai+qSgUBjUA3yuIN7JyP5qf7SwkvVufJRB7OXSolOrYjjoZ4RN4K6UGkbXN2B8+OxpEVi1OaMLmrSFS36Eea0=
- mo##e.ce.ms/TOfXvGGxtYeFK43vW9U5zrP9tWnKZ1Nl5LBAVK3VZwfuTN9ZFS075zGBC/tBI/PzhypeZVf9J3+DVPXp3VVWcPnNgGdQLjqSvBPjuCwRk1DLmLpJlAAITftg45PRXW3Jv7YLfBfbRBmp9f5Yaze4ReSjkk0JMVWe8QEYRAWOh8PAdfvggt1BvNhERBhdickYcefNAoOq
- DNS ASK mo##e.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''