Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",jufwyscuoumnb install
- %TEMP%\ins1.tmp
- 'ss###on.ce.ms':80
- ss###on.ce.ms/DuRTJDwHRJglAgAHp5iu0hV1zaEj9LS4yY3AJqGVgpWK6mhhJI0m5NWXiawLLCyRUTY8I8zN4GgYsMZtpm2011tY16kW42ik019KiMpTEtKEKQ==
- ss###on.ce.ms/gPVMVMvDeduRjsQlbG3vH1+HiieT4Ox+jQgufLSzIld1JU2LqcC4JtGcY3+HJLMBpidDgbtGBhefILDClboYMJQZLd2WzkzXW9uE25f5KBUI2GDtOYnRzpSpsk5Z+3YwbK0InuNhpnDJ00fblbsj+i3pllB5X3p3xB9keVfnD5Y1T4ElQ4FC85o7m/nS0QyrBqUc/4OY82Y=
- DNS ASK ss###on.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''