Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",vjbzwpvwjxhsnvu install worker
- %TEMP%\ins1.tmp
- 'cy##l.ce.ms':80
- cy##l.ce.ms/MCNzQzhUxPWbBdFcbX+ETy6odzOikq5bfnpGHZ6SFd3joQTTDIf8WG0k1YZZWd0/RhyLENA3JvPt+c8dOhlHvX6uh2NEa7WR7KXNpK78+Dc=
- cy##l.ce.ms/JHOjuvvg0q2Cjzz7ejRpDGRHVHlpY4IDye7yNi4qiBogyLEvwkUrvgeFm4JlNWyLE9dyv/anfu/yyk5qK0uFcf/fCXn/zkORqFIgFrHIKzyAytHaKErSjTfGWLwCzsZhbN/nqer0Xin2VUm8X42WgxrAGx13BzfDgJ7rsVOXpwvrBidMNiEr9lFE6tpicvow9FYbqFL7
- DNS ASK cy##l.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''