Техническая информация
- %CommonProgramFiles%\sgcscvy\coiome.exe
- <SYSTEM32>\taskkill.exe /im coiome.exe /f
- <SYSTEM32>\mshta.exe "%PROGRAM_FILES%\TOF.hta"
- %CommonProgramFiles%\sgcscvy\coiome.exe
- %PROGRAM_FILES%\TOF.hta
- %PROGRAM_FILES%\TOF.hta
- 'b3#.##uisumuli.com':53
- DNS ASK b3#.##uisumuli.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''