Техническая информация
- '<SYSTEM32>\rundll32.exe' "%TEMP%\ins1.tmp",ixbhfylh install
- %TEMP%\ins1.tmp
- 'lo###no.ce.ms':80
- lo###no.ce.ms/JrMtbgbzFFTbuM0MpR8SbAfElydUvePdIgTDPj2bbZF6olS0Vbtaa6eW+dC3VuF2WY44humWNapDXBQDoeWP8JOzZI1230+c9ZkJvXKZVijfQQ==
- lo###no.ce.ms/gulRcUmzfdvxdZ+wrtdxdBY3FKZOjQ0c3CJMmufOMCnwlDRxZT4J5nz8K+Yxfp6vDtIuFpHmDYiiRFTVOcjyLTJN//UZURg+7DhnEiYb3/kVjjRQ5HzRIL6FPlMOw4tBTCGM/ISC7fJ8kF/JBSwfYLW7lJq0rtQtYPLxgw+m7oq0t7XnSQgBALlOodEwLoNnOZ3h+LKGf7s=
- DNS ASK lo###no.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'