Техническая информация
- '<SYSTEM32>\rundll32.exe' "%TEMP%\ins1.tmp",ixbhfylh install
- %TEMP%\ins1.tmp
- 'sa####ntono.ce.ms':80
- sa####ntono.ce.ms/lZIdNAcFFcSCCZPCYB/+lRLERGtyB+phz2PNqV2RFZWNfR/Y41Fx8ZiTOb2ow8XNhmubnisQAmDRs9Rr7t2ic6m9lcdF4/ts6GjliMC5ByKGxw==
- sa####ntono.ce.ms/TnImOpWDSMsrNxp+CsBV16/8OKjsD4y/fEG4fcK2TfNCpRLaK6LKd8gyijeUMJu3s1k/Zjtcw7W7ulrSLBTjPe14awi8ypXl44s+6Trad2SwCX/N1IMPUM+1PfnNeVnRQeRi8EOWA0r1eQoL4NokeuNv3izXD5kZ80wrXVbtTdwHnunKYXggYqT2GvP/nxUEpJ2926rYA4U=
- DNS ASK sa####ntono.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'