Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",jufwyscuoumnb install
- %TEMP%\ins1.tmp
- 'le##.ce.ms':80
- le##.ce.ms/IixnNluUaGl4M7FIUeFZS97REmjas/q3r3gT4lv495peW2KO1NYWK/DilVUU36Kz0HoLYnExzU7rpv8Ydk2k94xgglIeBDYhHxjqrBn5csOPuQ==
- le##.ce.ms/zNDcJAYBRhPyS4T0WrDXXqaqtDiY35fjkzf+RYcWgrzPyNMx2K1dc9k98nmtCrsyBOJitv2yDaeiJ5ll71rD6xT91vMy2lvBU01HIhaCckud3rQ9IJoL32BaBytk7PbMh5mNZ94BgEe2BsqwPGhJsy3Afo8OC5lpHU9GYPRiv8F57kqIThKDIbgVTkzU1TFb5+NuUlnrKmU=
- DNS ASK le##.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''