Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",ixmhcrfw install
- %TEMP%\ins1.tmp
- 'me###ll.ce.ms':80
- me###ll.ce.ms/ppWgUgmjEFLpi/YDtPTK/fotNn3ECzlnjmJzt740yHao7qVZsW6CPfrPAVq4ljymLwAfZYa2NzXDdgCiuL39ufSJHlOW+aCLhN0oA+Tm9mfUJg==
- me###ll.ce.ms/TejNkFOAMoYwzQbCgpGnLeIidZbl4snKi1Jj+FWd9AeqyKGdP0QsdCiAAE4LO7yNZ0qVZc0C2lqp/4hx4CuiCXJ1OYjyhIcq95MeDGJ21WANOH1SpxbnSMa/aMPcJTX+ivvybzfDONm8KVpq/2JdBLknQe66f+HTl60ajrDilcMgyLq8RsCZgn4BXQc5NdrF+yH+0cLzL7I=
- DNS ASK me###ll.ce.ms
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Shell_TrayWnd' WindowName: ''