Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",mxjtizdo install
- %TEMP%\ins1.tmp
- 'ne###s.ce.ms':80
- ne###s.ce.ms/AXqxaaJuCEgUzFFvlJ8YvikKOT03TwLebmk5GF7z0ZK6ZmkZHRgqOiFlS9cpRPin0uaXm2n+SL4Js6YGkR2oMeE+dFFfnk5cQy6NSfffvDqGRg==
- ne###s.ce.ms/BSYUQDsLlDHl84dC6j27ScP1UwZ1VWTENans4ACejTtD/jdRjD8c/LwCegJEAkc0GyUTQemNWsp2RpeIEpGN15qKotUSoBA64j13PEbpQOJhUwdXLg5Gy8IemIni6ivW0cBhR4tBBZZtxHwv60vDGRHtF1P6j9hvnymHHSGNCXxKUShDj4n+Gt4iBslO202Qs+RqQPOv9RA=
- DNS ASK ne###s.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''