Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",vfajljqyjdqxti install
- %TEMP%\ins1.tmp
- 'me#.co.be':80
- me#.co.be/NLXPbHjg61fNSFF5y3yFeAtp99kicWkE6B5a+XXPIjKgqfrnAu2PpAY4G6qwJBuylR9fInJlxhViNPjhLQpSJ+ac7LFTrZ9iw/UK+wtarsjdPQ==
- me#.co.be/QYXlYmYxyUnjUz0mVOtTcnIFkIH1Unwu4WK/1X8IhTZ7BCiuOsykf2DlM5kH8KCsW6Lmf48OJaRmEDZesHjeUNCytwdF9vKmSNXn8Yrh7mKKo6ft/gUXOZ3ajSn2zGmXmQPDczoqK3zWTVWVYIktvfvWd4KtF/H7HVdizIKZlB6FnwgndSasGZIxhTTQJ0xYOxX2DN+zFt8=
- DNS ASK me#.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''