Техническая информация
- '<SYSTEM32>\rundll32.exe' "%TEMP%\ins1.tmp",jzzcmhvu install
- %TEMP%\ins1.tmp
- 'de###r.ce.ms':80
- de###r.ce.ms/ArevYUoFfeEbJVZyAOjbOGHavQHJNNPoTl4AnqKb+P5dVdQb8hdFwP5PziPG8p1/ohSHBDOTRfbSLFENJAikX/tXOJfrjZ6TiGfgft8dNzWFKQ==
- de###r.ce.ms/DGFcHfZpBKd5OkNtZV0SNFwbnlkyNjHZU8DThIF71k32iyf+lvvlkzdOESUK5/OG6rhO/oqnspGGXmFoTm+9g2l+U3i2/dY9E+azAjZxBqqR4i2+BXnbxiKQIKKBrEMJSupImH8D7nPtQQ4CVNF6Wl4S7vMlutbr9jbAf0h8E/s1bAL8TtFiacnA8cO7kFQGf7g274mVjVM=
- DNS ASK de###r.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'