Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",vjbzwpvwjxhsnvu install worker
- %TEMP%\ins1.tmp
- 'cy##l.ce.ms':80
- cy##l.ce.ms/pySqSqctj0koG/kyiLwO8pADg2gQtzghUBVajudOMWXwEtRwO/c7vUmqJLKYdUR/iO9z6sh32MxwWmUmLkU+ah04nzua3BcgL340nVRiTlA=
- cy##l.ce.ms/MHEhzBvwyeYtbl2IR31rLWvWft8LSLNtXywInbIPliJ3/60qQWSEnmdrZRu20gQM52cvBnpZF0ZMHsgj40zUPgvLRXRIXMnXzPeLpRiQFCBTjGin7vvMvGczbnzMb/Z+aHVJHkJlWc+QbL0wDW66HrOcFdrTvq3bqXNqMtRMVffYiMELYf1kcZco+/P6ULVSmN30bYBG
- DNS ASK cy##l.ce.ms
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''