Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",kqmryujwnsi install
- %TEMP%\ins1.tmp
- 'jo##n.ce.ms':80
- jo##n.ce.ms/jbKSilBUSsSXXvXbyMygVn+KJC/Qfr0ANocOP8d2ju7XhtL05A9hTVcRu4lZ3Vznole6pMiwbjm38rvKxOk9WxMpWPAG4HksA9kOuKN/kxsaZA==
- jo##n.ce.ms/zDNXQtkQqlB8MSOKQgqE0ETxvQb3Ea2whMHZj0zVON3/cq6/JvedgG/T5i7jQ7XtJAbPwVjP1c4dggBw8MHlWO3U9RglxVmM9VtI5M/o+Ir2/uhyJazedOkJPDNFMd4z/Jj880wfk2KQlUAn2G1XQckvv+aa8qV8qSvjtljU0jh66tiy0Ak8wxRnuBV1KfM0Btjh5hoaCQA=
- DNS ASK jo##n.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''