Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",vfajljqyjdqxti install
- %TEMP%\ins1.tmp
- 'kc###e.co.be':80
- kc###e.co.be/imZGcFJySZS7RDDJEzrlOhaSA1Auq9VIeeGmUyVdsTRXiY/pxlABT46qPCidt9oQ2xLYgTPV5TTOyavX3hLXjhDzZfEjW6MVAQ8wELTaf/xzQw==
- kc###e.co.be/xodOhVhrOAio8khtt6amECU/gEJ/W7jF/WESs7p2no3CyADX6GBzRQrGMAATPBWuJZ4cYBCrNbJuRzpgrlpwoQKRqTw14ejqWsLhbIZ0qrd2+ksgluHZ5tM8CI7xlKPsrfDADTV3/83ZSJB0ISE0i8hcrP0OVjWF+7kFiZEQqYxR4c6THmJirNSLCpyKVJfTP5IfzvX07rE=
- DNS ASK kc###e.co.be
- '<IP-адрес в локальной сети>':1037
- ClassName: 'Shell_TrayWnd' WindowName: ''