Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",vwrordykfegcx install
- %TEMP%\ins1.tmp
- 'me###er.co.be':80
- me###er.co.be/RCEuuWyM9IC1h146BVkHtVG30QxukQJIaKdi6Te8KpUMBjv5GQR/TnojBd36L0wAPyUlZvM0faretlcdKmOTcsr08wmXyG+Ok3ccLsCsg5c=
- me###er.co.be/ZQFIuyao+P/obasj7OcenA+YaiMKamdD69WcVS9eUaIeM0CpwHTXLU+uR63iyCbsA51nDUBuW2oxpvPlt+8qjWXmdMLl6BC2AEsILYDhIPqd2ZtoGgp+1LoA/29iBz07C6ewOcx+VMc9fEAFOiZNXXgVF9d6ZD1BlyJjWuuVGdMfF5qAtG5GC190zgrisUqd3WZl8xQN
- DNS ASK me###er.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''