Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",lacjasxpajvldzm install
- %TEMP%\ins1.tmp
- 'di###spau.ce.ms':80
- di###spau.ce.ms/rdTGaLiKmqbYFCm0Y8Vnpwj2cEMwiyL3gA3A+m5rdUbEQcoO/xxoCZaXPrJ46UX4OSX2mPZgy/bPrwp+RdxRCn/cx5jEaQlDCY89ZQcQDbC8+g==
- di###spau.ce.ms/WuRbEQNPNu2Ksz+qAvs0nWS8Ngu3f3EfLjkldCKN8d2P3F/fAbHnmY1z+72YRsQGsP9o52KvDN5LAlLjgTjIl3ErIg7tT31ptMyqiX/ndXl5Q/WUEJoVl6b0hMukPG+IfGh4E/VHI1g14ABLYouey+LwZxzQ4WwTojLvKBK3LDAUgg12eD7PJL1Kbywh+W/Vz4/6NzObegg=
- DNS ASK di###spau.ce.ms
- '<IP-адрес в локальной сети>':1034
- ClassName: 'Shell_TrayWnd' WindowName: ''