Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",ixmhcrfw install
- %TEMP%\ins1.tmp
- 'de###t.ce.ms':80
- de###t.ce.ms/skSqtemhybWAP09GljU5kZlb+df449Omkhje96oSvZXxPTt9p8xzfW4NBhAu2c/ghGN6Ffn7vrkWYvI9/3bEGpFtn7wXovFHkT8NYGJ/+LrZcA==
- de###t.ce.ms/LvKBevWRLP/MRg8A0/h5pst3n5/PUj3Z6zvw01m4VBXnG/+IkYbTjQZEyCvfgfc/k90LtqoBo2DS7R5lxi9JSvWDWkePNZQzxec0YxgYH71DgSVCEz5aPVXU5EWHqS9v8HptaGVpTPagx3EFm0D4Ui98XRxm0GDwHm7gfHBC3zPpoum7x2GE1Ha81ZYHjXbDP/nngS47vx0=
- DNS ASK de###t.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''