Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",kkunnbgbieaqr install
- %TEMP%\ins1.tmp
- 'ro###celd.ce.ms':80
- ro###celd.ce.ms/irQosKAp6T5YpsR2PqkX6Fa1Zj6i7hmzEvsP5g5F98Do0pcKUD5ETLfdM66H8Xgu5HHZLZEtgej0huErZAlDuzK1ODgyRm8oQeoXZu2mRVHf5A==
- ro###celd.ce.ms/yyZQjgKeF5VUtv6tjvYpv2I/mEa8fzYZ6tcoxwKrnQgKn1EqGfgrK0LNmBQVxZdBRrsuuqIIpgAiEKUtRXTnw9cjA8AYPaNaO7f70T9N8xULs+rsVdYg8gKRRKxoMXYJDjYEsAciaOFpguUt/M6dZCxkTJ/npQisNAt5mJPx8sFP+zZPaFagSV2B17NIHei0xInmrrht7do=
- DNS ASK ro###celd.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''