Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",kqmryujwnsi install
- %TEMP%\ins1.tmp
- 'lo###r.ce.ms':80
- lo###r.ce.ms/fOXbhRTL26xdfpQxG82TOsHXmhcJYczZTNQFvsUfpuW4SXu2zFYRPeoUF+pV78DO9vNn5IZPG/Yfxs2AuKLMev8LI0z+bWOraxdQLTYp7rVM9Q==
- lo###r.ce.ms/illdTDeOb4XbD9AQ/fgO0IRx+YosIYS5mOvICMjRPyFUU5tEMlwJrE424KuesBijVXZKfncU9ka0U42iq2YCATUG8zA9bcvcecjZxu14+E03h7GyPNaVF3PKtkrUisleK56b1Fi7D//+fHKJgboidlGXwpIa/QTFAZlW4O297cHSkOJtDziVBrFsvmfTr9YsgozfHHnJmcs=
- DNS ASK lo###r.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''