Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",ynmjngmwehx install
- %TEMP%\ins1.tmp
- 'no##s.co.be':80
- no##s.co.be/zEBJdJgMfTUNgor5eudMudrIP+w4N52QkL9IzmvlQkGhDOJGurr5zeIiIp16xFK/cgaMW14DtlKTVc9mQ2P6pU+o4oc4uS5BFUne5QEWkCA=
- no##s.co.be/IfuTsZdLRiHE7gBqLMSmeQ/g6r6/pOb2UpB7Mrk2L6wv7r+kFh6UWt1x7Hv0mhunLH7wu4yOOcV19/XtFbRRSIQ/ENcdqCJoExXu1+PZ23yyvZejhPSpl5vlMZJWxZ0fMJbwiMbSB3ylUejzjL8bGrZUWR3hoUyBlUJjUCbHboXCiSCsO6HPCDki0x4U9TfQ2rHsWp7E
- DNS ASK no##s.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''