Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",lqdvkecwrak install worker
- %TEMP%\ins1.tmp
- 'cm###lon.ce.ms':80
- cm###lon.ce.ms/xdTubUSvpJTUovHRjbQGub5PfZzI/bjksPV9APuSAtg+YP4cbT6FGFPJR4TPKfJI2IwJpi8imQDrtmiiQ8wObqFk1czWjOxIo+8CbgmvJnc=
- cm###lon.ce.ms/fsuUMwBbgp0afc/S/dhIXnyQdb+1V5yHIuG/tL8uO04cnCfSE0/Sz0OmH5Zcarh+WjR90l8pSRTid5usiV/UikpferwgVQXYtHHwiaap9YEQhC8cbLhKvbDPOjzHeKxavTTF0wVvib11pWYI8enJPMlrh/lciFpnOxR/L80aCyqbIFRRnLuvb8o9IyUg06OnWebwCW9p
- DNS ASK cm###lon.ce.ms
- '10.#.1.1':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''