Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",xnjtemhvpygwwym install
- %TEMP%\ins1.tmp
- 'ne##y.cc.im':80
- ne##y.cc.im/OjXyJaDWl4WK7w/3EMktZig9oLToYu62NdSW0TkPh6T3ihRozctidNdFmsIomnY5bk/Ku2F4XWQUislwO5+AOVRTAUUBX1Pf/K3PomOmG1g=
- ne##y.cc.im/xJGnelPzpZ7mwYpxwx6qvcSoKJItgOpVnwxuTKKG5WwHMtphrKxufzvEf7JnWTQn/r3Q/Q5yeQKiykwVrUqaPIoIXi8BhzkR9h4B89YdmG0uEU73uo2hOhEDFZqvf5ZdJILhmMsKfotL9DE5BiZJddOmyY3AZgmq0O5Z/j6NAJ4oAAWpAvPTh/VxXj7kLQ7upKM0u6Cx
- DNS ASK ne##y.cc.im
- ClassName: 'Shell_TrayWnd' WindowName: ''