Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",vfajljqyjdqxti install
- %TEMP%\ins1.tmp
- 'ro###ee.co.be':80
- ro###ee.co.be/mKtaGUiNjlL5Ns9AFQvDq4i43VNtiCGR38fq12Ia9VzOBYgFymyE+dzwcIQRti1q92DwshtihM+LuTQ2SbxdpCPFUAjd4+wA1TdvSIhid7JcIQ==
- ro###ee.co.be/ZJjfgNjhWbfuUi2tdjgii4fGXKOr/4gVeVdhXzp9+b7wvGrjpNhGWCyHSgu43VYkp2Etmyf30boGg2Q2kzvNjiOi4y4ld6A1/uzbc9lx0H0AR0ZROVxqkSicQPgqhb3c3eSOyzApyLZDwSYpTvVMclIP5kJSRptEBfQ63KZkQWS5cXbqyo5xRE+KM4SXtikEnr/a/7LGitw=
- DNS ASK ro###ee.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''