Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",hwivwnxkd install
- %TEMP%\ins1.tmp
- 'se##.ce.ms':80
- se##.ce.ms/WHNtNmwCWuoOvz56+6XjVpG/Z1LKOJEAPlmSjA6jlmpYvvpE95sOOzD2SyW8WDzoFYNAoDfqERsRbyUJqgw/3Mjh/lT1gO18Pa7Lgsuh+XT1XQ==
- se##.ce.ms/ZWmeoiZHtZHPbJlHIkiS0vkw49PcUolX5R8+xZox6PXwdrQbVK1DKDWUzBINCEPQCoKXiY63q8ykjgxv7nZRtOfzgE/JN0xVuL7lguKouJkipEvbLeyG5ximul10GQimeAPyVhhhpl6YoSW8gfjip7pZSjuFUTSvdVYkLKXY3FEZoNvWz7QOmk0+gHipRpwzIr6MV7/a5gQ=
- DNS ASK se##.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''