Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",vfajljqyjdqxti install
- %TEMP%\ins1.tmp
- 'ro###ee.co.be':80
- ro###ee.co.be/rJwfFTDyRN6Kujerh+t6GGZHCd8C32wGc3y4Wv626g6aYk33Unjd1Ji0U2R2/ysenIlcuv/rLlUYTAk0++52b2gufE+yEKOwbXZBxoeQZ7bDCg==
- ro###ee.co.be/oHZeZBCyjwl6rnLWdkZhrfOq054mZpZ3aA7F7tmUwPXEvAhylQ8qSjlMETTu9ZHa8yB4Em21WV6ReKY145+ceKjfM5baAbQCjvwM6eQnjGX8LoYMVrRqNpl10UChKdpEpHXGwaeXikwrA9Mkm1bv43LtoeGlYN8vZpkmmjM4khh/NFDgq/5FPqy2rN6uxb6YaHDAxSd6W8w=
- DNS ASK ro###ee.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''