Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gvfhqhbcmyux install
- %TEMP%\ins1.tmp
- 'cm###nn.ce.ms':80
- cm###nn.ce.ms/DqYmEIKRstS0WnhqrTp5I6HZNwIHacxdNXHGoYxzO5UJmNFYhb3TYgQfrHRfXpRiJVfz92rzk+g2Yk1jSGj4dmZ+StQ4oJAOCR+EsDLuqLTIYw==
- cm###nn.ce.ms/ZLuwNDWFSaz7KrAjsImlRHIb1k4jWRE5relBVeGt1/mxuC/LJjPYaUTezlLp0tpN1huakfOSoInFjwLPmytt7vO0btkMNUe7/JgdLcbnUuSV/Q8chT93yDSOzPj+OofR1vj03likJ9xgRW5my0Xzq+kh9Qwb1KKCDgsBEJ4p7O9k4lhfz6IPf5zGTpLEn4jStsWKBTmCZJU=
- DNS ASK cm###nn.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''