Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",xncujvchq install
- %TEMP%\ins1.tmp
- 'he###t.co.be':80
- he###t.co.be/SMqSPqKzGLI7Ui4rkEZivbVXGWfS95xwC7yC5XWPHkCCmxI0e4M4To3CfWXCu9TQoOijAhK+T9C7V//NZfGzkMMCLNzNiht50rpxfW/TyW0=
- he###t.co.be/ZAmRXuDNu4PcIwhsoslAI4AJ2R+SWSiJqXA0pyXCvbfgj+wUvL3bqx+MXNNU10KNTufsqSy8pOYTBMvEf0VgpfPAwJB/mGcwPy0m18Nw0YyswH5XTHs1JGQyC07PF4lOP0l3G78eq+/WN08rcBYxFAXcB65K5HF5RPRKJKVGEN71tR0WaIOAmfbmoyQnC3PfwrSVRiDv
- DNS ASK he###t.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''