Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",fzxivwzqk install
- %TEMP%\ins1.tmp
- 'ro###ner.ce.ms':80
- ro###ner.ce.ms/RMyjfvNBkxAPEU9RxswjVL0tzyZvtRtmrnHrl39+tLaNKaMPUpDW683mT1m15uQO2YGa9p83oMpQefaRvP5R0RdblaLxGFP+0bfwGaSeAIJW2g==
- ro###ner.ce.ms/iMBsKKUoTbJ9IArS50o9eAm3grdwWpr9t8CoaLnL+pOknjDG4Yx13wTxOCv7YhrCg9QuiciMoXAjZ2JcyR7mRl4X1n99xgQS/JnDDyQyjrq1G+0SV+8WSTKLD8HBbnYXEGqxkdu/PdJV+xZqhrroRKvUNMDga5VkdMKWS+zIbxPH/dUNeVJQUve94Jq/EL9mHbXEmA8BlkA=
- DNS ASK ro###ner.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''