Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",qcgyweaxsvdswe install
- <Полный путь к вирусу>
- %TEMP%\ins1.tmp
- 'ci###n.co.be':80
- ci###n.co.be/MUGqrRrCMFrz8HTMFdwDhUlxlwHV4Zr5wgei8LtFG7GH/Igyscwpkd3hHh8wB8mD0oAtW8m0T3qnoEJGe73s9l/TihUfiTNygzpCPQGzRhI=
- ci###n.co.be/MLTsjVEdj/GruZdkF8I+HzF3uwwadLZLjDu0iZ3zmPRLGUOZcRuU7fgZVvJLk+WOrI+N79A3sulsEUT8YIHSHecNHeBQYcZ9WYW/O5ESgiOziKVoZNLopkYOmwxjbUr3a6kCYGkXqIW+oAYSXqnuyzSidhRHrjBrdJGMjbrgrM1BlAC8sO1nyoPTRPhFGZxithrVE1N7
- DNS ASK ci###n.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''