Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",hwivwnxkd install
- %TEMP%\ins1.tmp
- 'se##.ce.ms':80
- se##.ce.ms/YVHJPSAMdWntWSaXeXHc++1wz3lWKQkS0MRiGt4EPpA9SJGBzddL/auYOaqubpr0SxFxu9AmgvlYGqT8lpghvrI6G29Z3sQQHTK5rIs187zZ9g==
- se##.ce.ms/doBBJYkM/L4vdndkr1qAztUSTaTIzU5XH2bida8MdnjaB7Twk4tvcCqSdd3uUwIDBCIZmE38/dXtELCeIp0/1/1YrNDDVBvYxr4oHnLWbojKUJmwNEX6Sa3FDUDm0KWZSsVhmbAXYSk7ZfQPnBS9GzC+yWcqFWYyTFt8I/r51oFi+IyYFIOiIDbc+vCRmkjwtdxiLhalo/k=
- DNS ASK se##.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''