Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",kqkpxvobo install
- <Полный путь к вирусу>
- %TEMP%\ins1.tmp
- 'st###er.ce.ms':80
- st###er.ce.ms/EzidokfTRadxeLRzoKkTbJgZnQ4D6MZdDn8/Wk7lWPaKHI58nkmr1Wp3IplpEODK+mEWd9m8x3Gq+aREYhtT5dZBbMWMThojs+9OiGyFB2YlRg==
- st###er.ce.ms/HpioHBIiRDLwqpBvPui/tu/+TqbfHTB2BX8yqLku18Ek5hOndNOWU172PWNztbZjtnl9KE2y7dUnzxfIM/e1uY8setLTxbblkjGmrltCLd28UZom8wLE2T/2LD2t5JygyUoaqSQY5exm5OHOt4XRFEHpUWYnevA6t3MHasZLNkFV87yJ18reykBzMhiMYOz9om7I7hkruRg=
- DNS ASK st###er.ce.ms
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''