Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",fzxivwzqk install
- %TEMP%\ins1.tmp
- 'ro###ner.ce.ms':80
- ro###ner.ce.ms/DcXvjzAvnjRdQg0Eqo9PEdcNkOcCsJz54ACk+JQO7HpUePMkCl15f/UQQJ55EZN3WRJAu8uzH9/TeP//m1Ip9F7DHz+gK696Z58FXuSp93YKmQ==
- ro###ner.ce.ms/wXSgJZdkaBylsZE0j/koX/WcRgSzWdyrZe0R1zw0DpBCDhFqm48pkGBRDX5ko5dvnzRmwiLLtEecW2nF76FfA3K0i8tOWcUT+ryXBP3e520ADycdVQrkvIdyPLgGmD1e44NJIsZltDUfN3EWhsdPcXDeB/SIPRjaJ/DvlOYA6xetb+X33VOBYAUpgy3a01kwGbEW7UPlk1o=
- DNS ASK ro###ner.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''