Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",ttreyijrpjflxej install
- %TEMP%\ins1.tmp
- 'so###f.ce.ms':80
- so###f.ce.ms/ZauzRaBc/jFohOojdVm+cMAQ9H1QAoY6T3SWoHom4VmhYjnWi/IEpC7qBbsKrZxemwblyiS31K/boypcbZRZgMMF5qin602HxbXb36IQEET0Pw==
- so###f.ce.ms/lHOnrqGttkhMyk1MxHJoIZJEP86ArkL8vgr0rtkotOout3cgSm2JAkwStUj0/c6v1nAb/i+DhvyNrnSrB1n6tLYb35vsXuC/ZxQLvjO05vhS5K+2W0HHBKMEBI7TiI0lSMFJXUEYQcOJs8hbrE9S+aWS0WcO+NYyYI80AcrsvzNRaGzTiDrjsdLKakgmXRD3sUM8iL8vM6c=
- DNS ASK so###f.ce.ms
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''