Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",ixmhcrfw install
- %TEMP%\ins1.tmp
- 'te###oluc.ce.ms':80
- te###oluc.ce.ms/dtiKhAkWniIAAeMFikpcNOnh7EKN9R7qYLc3FDYy3iGa23j1+RD5FnG5qSsCv+JT33szLqnvUAGApw3vcO4e8+rJy6KOof/oVeJ+5agMI5/x9g==
- te###oluc.ce.ms/QlRoWRLoFbjQ73vxedfsSBEDA4cuMx6lVepQHk6oKQwkP8nOJ6R6jKgDRYt1FczaIDV1GEiN1Zpx7j4fuZmErNTNAsDLMO/XJfBnqzq0FvZvz8vXCQjykcm7SZ9Y/BeEIdlpR12Lo4aojxaP9NSPfdR5/59aHnh+FiHaNgwoLYtB+ut2goK06ZZgDhwgOrk0f4g3toJvhCY=
- DNS ASK te###oluc.ce.ms
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''