Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",xncujvchq install
- %TEMP%\ins1.tmp
- 'kc###wsko.ce.ms':80
- kc###wsko.ce.ms/LEWPUsRObv5DwgED67T0n9Q2WiuGIwxTqnMyBnMP39Ph6I+ysl3Pmu+h3kqqc/JWOpujhjMi4ug0lMtBryNEoGDyqKKCHF0HG2JhdRv+lqI=
- kc###wsko.ce.ms/EuDFoVZCIbz2cu6sypPPX8I+ILCMKZfCtJLPWqIhEqu4l1Kw1BmGbLP1NkxY6ne6/XgRoubBJmz4cPiVHwjLHBzKPqfoB87uOC65smnm3RtKY++lH/5dZWMy7e+/hhSQD42It5Etm9bARHdWcaJb7+guodUMr1EcI8uNqYOtHKs9Qe2Efq5Wrm1ZMa2k8UL5SYs0yEnb
- DNS ASK kc###wsko.ce.ms
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Shell_TrayWnd' WindowName: ''