Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",fzxivwzqk install
- %TEMP%\ins1.tmp
- 'ro###ner.ce.ms':80
- ro###ner.ce.ms/tqUuqBKKLCRM8ZNfGEhMMBYocMoOg/7+dRuW1QFvaKR6hGQ2v6wTc8JPubqiiDUWCDmyDC5ySFoxByKS5C12iXAFOlM096gc0h3TsWaa8BcEbQ==
- ro###ner.ce.ms/KiYuhoqoNQ3X+fmPxlWRU8R5Vv+O0BxKs+P51g0FshJ+5NzWgL74Rk6zznh1YhZ7L66g0+a/1nzjnohVc828dKDORgMXgW8gLEoojBCMwvWBWBaaHaDA9KQ7R0pqoPkG7SzDCLsLphxPWVVjmDrDzx1l5dEI7V3/QIjvVmU/GPyE+hc6gXt8ApVjxJP2kz5Fq/QRH182R9g=
- DNS ASK ro###ner.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''