Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",vfajljqyjdqxti install
- %TEMP%\ins1.tmp
- 'kc###e.co.be':80
- kc###e.co.be/JuDYFBFyLheJynpCEtsvTylFBZvlDsB1KcbzZKsrQ2ixSOUsvax7HmllMhYLXwnJCsxtbwuUBZMREookwxUQbplEo9cOWbXsxY68yl2w658WPA==
- kc###e.co.be/OamAYAUZpTRmIsF5TDmMg/vHD+zQ1cz4DaGE7lmS1iqrhqPAkoTrfqcJbUBGXqNnmigtcT4o6L7oYNj3Mxkg0CToueFFOCU1IqJ0dP98UalOM4Cr/eBURIYLl9KznxU5YaFQnk/8K0TStBbx7Y2d3VBYqIH6MIYcee1+Ha/JpOZh5vFyHnbKj4Z/5waPaV/FNewt0QVsX/o=
- DNS ASK kc###e.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''