Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",jufwyscuoumnb install
- %TEMP%\ins1.tmp
- 'st###eeva.ce.ms':80
- st###eeva.ce.ms/TBnSNKOu6oLb32gd8ayxX983Hqh5MH9h8vwwbdwZ8lrbzVv4vlSWfFhCHdf0tyJf+1xWPMeDyOM6T+X9xuIuzGhaVOQGlOUMD3KQ2UjvFF+UYg==
- st###eeva.ce.ms/czfnHQXo6AfcaSEDntCp4TVmjhuLTOA8YVLqZUbNsiQd5S+pXEYaK7CKWt4sVHmcKTVb5JMZDvQpm4zY7ReOeCJ0LVA4elkguznf1XcY4ykoJjjE0uT0KrMmHhQDz7fzHNy9vsx0HdnM2Dgsoq3BHOtN3Sw3+SfL1jI675tm3SqTnZ27K9M/ovNKTM8AeL6YBiFLAVlIU0I=
- DNS ASK st###eeva.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''