Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",lwkmesur install
- %TEMP%\ins1.tmp
- 'lo##n.ce.ms':80
- lo##n.ce.ms/elCdxpsYUVVykupgPBvLfwfFccYFkhhu/v3R5NTH0LDfydpE4pNomjiFz21SnDnQlTAwyzjuIubzq0QzglJOj8O66+MN94mg42aferv7P1p6YQ==
- lo##n.ce.ms/uEDJgxXfQU/3loDOwCm0fLGUGqWU3ubkA/CsPsc38734LTnXDHwK6atnJAZFQd6G9rjXsZj+sntSf3/ZmZ2a+58XU89XaoF1bWV/rppG97Ohxz8KzgpQWjkkEhxqmuI7fnMLPhwqn9eKSjBd5kCdC7ruz2TSX4DGm992yDvlNTKH4vOE8MmZkVHFqiay1Vx0ycnuIajAfMI=
- DNS ASK lo##n.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''