Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",jzzcmhvu install
- %TEMP%\ins1.tmp
- 'me###nes.ce.ms':80
- me###nes.ce.ms/iylrRPQzoevXWw93GXyrb02g2ijecLF3RnnS2yPSMJqvFLYzV0zWdSBKySe0F3bu/pda7Acl9JPOJ0wpZpg0oXxaOpy3kQbYiUTmOjt5X4TAnQ==
- me###nes.ce.ms/peoYVLYpic9p5CHypibu5LaKHwjGx49I4zOGVqvLMRBzEBvpc4AkOkC/v3/74bUPczBwig378cpzEPm/HBeZ2eH0GvfTj+wgqxqL5QOWI8EDUYJH3nYU8oE1y0BsEBkLqMftsN60PMyBUvjWgYYu3xAharj14CwhYXuJUz87k7A1JfyWX0apM31Dv73qsquEWhwyV92T/Jk=
- DNS ASK me###nes.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''