Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",ixmhcrfw install
- %TEMP%\ins1.tmp
- 'ce###n.ce.ms':80
- ce###n.ce.ms/vLnLVrDlQq1DNvaqzc/uR7Y9/urQIdEq2aEKDEE/cCeFxF6lANrEqvi3KtUSOF5CGeuS3IHXNy/yCgmXYmn+Jtn5qveVRvZ1JI2+9FIEpWb43g==
- ce###n.ce.ms/kAUKeAnQotNeIrvpNEtLR/p7G3HS+a3v48UGiVCJFvCVoI0PgyuVpJwu46XTczleb+jxSGPSZkijjgLdiQvFsLFgEg8WKVHSzpmnDc2nZt3KbNlWlLFfbzz1XVzGGNvbgl4jJ9hySro3cQyOW/MnTY4RyibDsZVz8mUVlYWCIhBw4dEDf34vJxP4+eh5jdBJEuLy3YDfxAI=
- DNS ASK ce###n.ce.ms
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''