Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",kqmryujwnsi install
- %TEMP%\ins1.tmp
- 'lo###r.ce.ms':80
- lo###r.ce.ms/PpTmdYDtarD2L3DOXW5+sqOskMak3+tyx2wdxdGpXralxwSrsDp8VGgyo2WhmeDmLaRipd3WBh4+yTCbLc2ObQL/Q86rrT7jNrQ6tgXrN9Z/Jg==
- lo###r.ce.ms/MrEWqUcohzOaHIzaCFhCA2i+Qku0MyKxnacZPVxChNqnZxJDwaYIqp/AFf20UqG+n1J1Rbbd1C7VuZTgg05FibZ6jFZcylijsNeXmiODeLjhfHIkLQ8jY2N+IMeyhVTrfX5FQbtYWEdHVjtIz0O52QW9zhkL5sCcDvFy8/lLL0d4QJLRSGWhw9HzLnjFa9RzE624VVR5OVc=
- DNS ASK lo###r.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''