Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",fzdbpxpsdcrvtd install
- %TEMP%\ins1.tmp
- 'ho###o.ce.ms':80
- ho###o.ce.ms/lPPPTQedsKt9zMjIjutSsqP8eXUG9lf5QQei5ur81/pQHdPzVst4m/PlHHxO5Xp1HWl/bf6m0awoD986mJcIS99+GvdZQCUyZlJ9Vk9jBo40Ug==
- ho###o.ce.ms/PlTzCDuNTf6Ac4j9wv6D4DRITRfXIQrni6eDtYvjsigRKC4VXR5Np4NLuEw19WePLw4M5CuFjaDn0/dVbO2ajZwYjK56+qoCSax4Z+sDHuPVbyskZ7Z8WhBkwRZYbzlUuMM5ekizRgNT8I4KwTz7NLc3GRmUM10DwNPw5KGGJfl3nj2HXP+av+SHYnvlK4nJ8MBo8TC7CJk=
- DNS ASK ho###o.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''