Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",vfajljqyjdqxti install
- %TEMP%\ins1.tmp
- 'cy##r.co.be':80
- cy##r.co.be/xiagySaA+48SF3Bm6NFa9Y2dtuZz+0R8PiE+EnwUmUyDfONig159xXRcbK4IRNyylZCYi+1mWU0LUIcsZw/8OVf4uIR1ajnAULU/KZS/7yKuiA==
- cy##r.co.be/wjUISrVVwQo6KKEVp0qftsu9Jjw+Ul6ReITwRvzQUyaIS0+ftWZJRpiGYJ5KDQEgQJbvkK1HPIGsbo3rOfbFJud4FpaDnLLvoJsXgxk/J/ZwIbfX8DbOKfngAsLD4vyKDAXG5trsetCW/onO+oECZkGBcy+42TM4Xn458C9LOGlB4chzNGqp8cfPeicjJWQQG/LWGuLyyGU=
- DNS ASK cy##r.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''