Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",zfubgasokzba install worker
- %TEMP%\ins1.tmp
- 'om###h.mo.cx':80
- om###h.mo.cx/vjefBnTW1pQEtZ1FyPIx4qDhr5cog5fDioxqeSRbQmIk2oB3rasXtmNkBefvcOZuWQFIPImIKCIPSz8uJPyahVsEM2G9FwOWXdyezIUB27E=
- om###h.mo.cx/hUyOTbUvDmU7ereqZZ5Jo+1dM0yBKSwbXjpIlDHeYZtOsyYf+/o7SxACIBfgAQm/unFWNgvaQj9GOSpkiDhrKrz+LtK3/8gATChDrxSupU0XZytX7uPn6bME+W0/fN+q3hN+fanNlzXo+tbqRoJLfs71psHrYFljQZdr87fNNO6/Ry3XOrf9q9VY/mMM7E52O0vzgXY5
- DNS ASK om###h.mo.cx
- ClassName: 'Shell_TrayWnd' WindowName: ''