Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",vfajljqyjdqxti install
- %TEMP%\ins1.tmp
- 'kc###os.co.be':80
- kc###os.co.be/LMaInpLc4eYBTceFZrNxqo+pgvQARRIk9m5xe5lnuQ1FXZfG/OegBkKzxU87jwW5b35vPCM8HBlZfnnvpHt1gktDxm4hR1ek1UFnE0USOWqboQ==
- kc###os.co.be/QqkxlLQTAszr0GZo7SfIluWU5tcC2RjhT2ktGTuvq7/x8CEg5ofj8fzN9EEaanRS8F6to84SqNoPNz1VJJ6mNcNSgk/dX/f/QHrzWPlYO+pqD0euTs0eKBYftnjoUPnZexr/FP515TAqFv3CVc1WKwVpK0/J72bBMNLwDg6uHyYI+9f67YYgMOINZMbLuKswNZq7ep9uV/8=
- DNS ASK kc###os.co.be
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Shell_TrayWnd' WindowName: ''