Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",ttreyijrpjflxej install
- %TEMP%\ins1.tmp
- 'so###f.ce.ms':80
- so###f.ce.ms/FsXiZrSrR6rhXRbMDyUVg24o9D3Qsz/EfAigwMQ1KXu2nPy0KaNltGylzOcwzcgagt6OX5jpUfjTN1YERfjSsPE/ulUt2oBriaKuYc5dRGOc6A==
- so###f.ce.ms/FHBMGxqG/UY1Tr/RVb2AQSU7tHMiexYqRZXZ9Ai2xhP0CnJTkESHlnl+O30fg75AzbxthJbkCtWefZxyM6tE/qsQwhENEhLpNFoCW8Xyzkjq7RsYGJ3zOwsYFXSsyDhsK5dNC4/qHdzAV338h6m8Id87+QXxNEM920zRQ3PkR3TuHhPBzR9GVI0avJ5J8+C7cclzcSU8tgc=
- DNS ASK so###f.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''