Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",ttreyijrpjflxej install
- %TEMP%\ins1.tmp
- 'sa####edez.ce.ms':80
- sa####edez.ce.ms/ybwhHylgXTOnyIOAHp6mpttqe/K5f9YJeHZXLLub9DHRTWwKqB5fbTvLeLXVOf0UW0VZWo546W7A804y3IwR8HK+gldVWDd00Il41BAAE2kbxQ==
- sa####edez.ce.ms/TNCUNEZjX7xtyuqE/PnfIMKTDP8qUvGEGs740fdlHqGHS4fabRDC7m8+sE1HGutLHTJX0AU2zgu/WwwEoOR6WSEFFg5mO9fhZ3vdO+4tYgk09BlnrlqlBGLzNDB1WyRBmd857k30CpplTFaWw933UEt74E4/+ceN62mSHw1v3qCMdAglPYvQRMUzWq7G86d6H4xutRUu9vk=
- DNS ASK sa####edez.ce.ms
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''