Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",vupyfqkw install
- %TEMP%\ins1.tmp
- 'lo###egh.mo.cx':80
- lo###egh.mo.cx/vMkxwBLkNEFoNRf1gB7HPE0vHrvN5Od4n7qLhtDcktz2ry73IcmuR7xwj0E8WKW/V5Qxvp7leVK8hwEU8yuyeBv/DqZ2jC93XhBIKVgfaWE=
- lo###egh.mo.cx/VPqktpnZHeUKwW9WRwfc7VTrshGjt1kLxl0KZ1epMUL2x6//AaGjuZsxyEoyM7B/Wclu0teRTQbTvxFKmnS3DrQ8Po7XT+5rbYKXGA3qClYRA+XgoXGBzCit4aBVHNLVmyYKY7cOPQuoawiF1UYJZrRcn7e1wdDn/zKPIkoy9EbssNzLIUODlnyMhds0TxHq8vADIFo2
- DNS ASK lo###egh.mo.cx
- ClassName: 'Shell_TrayWnd' WindowName: ''