Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",xncujvchq install
- %TEMP%\ins1.tmp
- 'kc###wsko.ce.ms':80
- kc###wsko.ce.ms/UILNbakE8ZyhNyMWMO3COdCNzAxZsUKhIfyDsGN09dAGuL8M0uUgDS9OPYPuDdO3+zowFY52R4AIdQEqqqSwZC0OFTQVUw9pgGK1awBOZIY=
- kc###wsko.ce.ms/NFLNsPqp+iINgGiuRGU22HxACTNLv+SV9fdJLiYOVdnmt2Gg+Ph7q6GeTvvyYw6QNOsxQwj7PxEY9fLddxgxT9L1F16mDo5l6lUFcv7kGJ1zR5oWst9e8/uAMNcTGA54hePRdbf78+1zlS0HoPGWKulLXQIZg9VfQY80EZXd5LtsSpXXohqyq6H2x4CVjNcLpgLXB642
- DNS ASK kc###wsko.ce.ms
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Shell_TrayWnd' WindowName: ''