Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",vfajljqyjdqxti install
- %TEMP%\ins1.tmp
- 'cl##o.co.be':80
- cl##o.co.be/KscYgsmSD41pWMJ2pX7nFE2BVw3eyTTCtbLtJ1WNLweyDmB7EaxNS4PoqtEnorYKpDEtGSZXe/ym5dtuXoLjFSnroXEMQACKttoBF1pK+kVB9g==
- cl##o.co.be/UPflYxdAVaofFgkhWLCMZNF+WZOw19EnPyvSy2DApZuLHka6mc2GCbUOku6s6FFGybmdlsn2iekSG1CgGfzxqKf0rLeKW4maLoadC18U3VesQIdTHDJl3pe4iyrIzRxKSCmGtPfVVboA7gs6Ar6c/77vLfwZZ7HDSVPKxBYtnkZllaC2OOrLWl5/2djl0sRZFBjV2jFuMR8=
- DNS ASK cl##o.co.be
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Shell_TrayWnd' WindowName: ''