Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",ijuqntdi install
- %TEMP%\ins1.tmp
- 'lg###ed.ce.ms':80
- lg###ed.ce.ms/UhtulVSXxihz5EhpeucYe1ojgNhNAugxUA19JqwMRFQBWK8Q8qCRcz2QU2dA3XsuWzB975mDok05WITuCCj99Hs0M1Clot4vCJBtGws5ooBzcg==
- lg###ed.ce.ms/MUsVsGilsruNWbtcJ8pJ/N3ezY2vka2Y3lzyx+eNb2oTmL+rUkARZpC76Q2F/Xyb9RImTdLRXg9/8L94bByP5ogLPUgMc+RE/Q+I84Hom/kHSJ953boRl5a7HmT1L9NfkszPyBjSKULEI8AF2pjca9fFxxv1Tfd3SrykadQW4n0C7fwyVgKTTDMkyJeMo1Kff6B/fdNFPcw=
- DNS ASK lg###ed.ce.ms
- '<IP-адрес в локальной сети>':1033
- ClassName: 'Shell_TrayWnd' WindowName: ''