Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",jvbgeloznihsvw install
- %TEMP%\ins1.tmp
- 'cl###ney.ce.ms':80
- cl###ney.ce.ms/rDpAfeFcleZeh47Q92Nj45Tdb3wevZEQVLenODhU8cUjClm/JZPsiWGnQnqndU6M2xxTicnZhaRTzSxompcEZCva+YrqFM08ASknpp3gEFE=
- cl###ney.ce.ms/nqsQsbhV0webVCNzOjY2jqmUkhtjz87OMzOa7do6lr/mp4GEVVOwN3TEbE8e/zmFGddCW/NxWDbsD54RdK0j8Xf0uL6UMZWDexHUWavHF90CJ2l8A/bucdxhS3J54AyASjOKNYAkTwhMLcaYYxDpMbyiJ/SiNQM2ROYVz8qg78T0qQvLycIZEwMegOeDzbByqDgtPjOV
- DNS ASK cl###ney.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''