Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",jzzcmhvu install
- %TEMP%\ins1.tmp
- 'ji###n.ce.ms':80
- ji###n.ce.ms/TdAHxQREp3RWQC8+mjZFJskPlxVt2WNg44PhbkHoQbPtBWp/NqBGXbXG+pxNb4Q/U+M0b93dSlTXlUFQA+Ipf0hOseXD7NqvLGkX4AYtfgXhZQ==
- ji###n.ce.ms/ToNDEfyDjdNI/EYgcLmOFoSqV3j02lBZBLvOHkvETnsxUqCRL17xqIB/xU3OyuxGi26Dx3U+sgJjQ/9DT0S8dBoYYDMNPPfWyog6QtkQdBFRo/dFjVlr83GMy2NxUiw01Jht/22kW9mNSPCZIaMquDma3yjDIcR2Zf7fSW/WUtMa2pZU02nyYecSTqycnaNTfMOVyG8CsvM=
- DNS ASK ji###n.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''