Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",jufwyscuoumnb install
- %TEMP%\ins1.tmp
- 'ss###on.ce.ms':80
- ss###on.ce.ms/SJpUpZRlw9dKD+sd32YScm0H4TK383VmlrGqt8lBi+J3fZwpKRPymIx9Kx5atcKgaIqdAFySPuMAY6VVXIBPmowuSyBLNtx/fzsGRfsjaP/s9w==
- ss###on.ce.ms/QyiVHVDybj0uxBQ4KjB+xMTbkdxh22z6Sf5yzUGX6Q2mgworAeJwcWhpgPQSCJSQPoYP44AsdzN2BOPeFxMBgLtPzv6LS2KAxR8I22TpUAPKz/t3kU9RarDgTENl/hZSLDvMiRWRM+c3QgFZ4wIpYO0Q1NlhGWXVhoNlk7B8m/i7W+i1AV4jHmnRpAF9V6bXQs8F25YIeQ8=
- DNS ASK ss###on.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''