Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",kkcsdsizgpgeobq install
- %TEMP%\ins1.tmp
- 'ez##.ce.ms':80
- ez##.ce.ms/livaskQhOvAcR2WV90rHY0DS++7Xvrvc25xyRTEn7LFlBJhIB5C9dG90gK8mbWkGIUIP0JyrO9uztJAz0Tapv6Nwt9En4CG/RgsouhaTyNh1og==
- ez##.ce.ms/VqSYyeTIYytS/zXbMi7YRJ5Mivbr1PhNc5urIquaPBJLa3zIFy7hfXEwPrKvyn92UJYW/R8QS929rE3IeVvxtYhXRkfnD55WCAtfRwqksmHY7xWOnGt/qpvLZ+QaybCnddINzoB8tmQKUoF5NwXuFE0R+PTCeTvdyWj3AQEz1zFEUcvCVuopI/VZakDdjE0YeV03L5c2K1nVwuBVs2A=
- DNS ASK ez##.ce.ms
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''