Техническая информация
- '<SYSTEM32>\rundll32.exe' "%TEMP%\ins1.tmp",kqmryujwnsi install
- %TEMP%\ins1.tmp
- 'mc###l.ce.ms':80
- mc###l.ce.ms/FbYEZDaWQ5TJwaulfwdmOpZlTEuxL7U1svDblTAoBzALod+q+Q4/SNVK2A5N7pue30NpLKzPt1mPISS5JQiKDUW/SG/r4IAg4di9xPU0s6tbXg==
- mc###l.ce.ms/NvmKtmnIWMGfTq4q4jPN96D/7ESmO5OAFazUYiM+tv1ls80F+HU2dErouDQUmWfeESwzV2bq8lq8dLv3jX2hCUFnMMTSNpFlkXsQJSnePc9oiUthLL4R3nHqSK8DsGgI8fwhTnb84IV5ZOaiWOPXdL7U6rZF4h7NR28mZShC1fUdCe2jZN4MrL9ZUMBUoQDIGMaTPaGLJdI=
- DNS ASK mc###l.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'