Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",jufwyscuoumnb install
- %TEMP%\ins1.tmp
- 'ss###on.ce.ms':80
- ss###on.ce.ms/WVBNOQYsyK1Pdsckzfo5tACLaXy/y/CqZCuiiqC5ye8grAT+LUVZG+AjJhNQ62zmLQ2+6dU7L4TVsQm3hExcn8EjSxEMCzDFq8asa+VdtlSJMQ==
- ss###on.ce.ms/JCCNQiYiXQSrI0igEaMmrREdrb5YVOFrzmyIKXoYxNeNmnTA/nN9uDVDbYQYpAJU8n5uw4KdLkj78/cLyCtHMurEvF0tlea7vwOleiV5upu7Zj2IsLZS+7S9+K+BfYWId6wZODFJSgfwkFzmr6swtuAtPVcKrU4kGSO8GLmvV+yIn3lm4G2Xf604LE2Fdz5k75MKcCEljCw=
- DNS ASK ss###on.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''