Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",vgfauphxk install
- %TEMP%\ins1.tmp
- 'po####ello.ce.ms':80
- po####ello.ce.ms/TLXfjZNfgJI9eaCClg8hj8+kiuqsO0BXZDx2QHSZcsEbO7ty824Yv0WotmNzOntFQog+xbz7W7f2TI9Qg6WHvFbLtW0n0kv5D70y1tOa6odPjA==
- po####ello.ce.ms/tMRezvghi9YWzq/zR+s3fqhVfAXPC6E52+SsSwoh9l5ZKCSBQobwLdT7m/bvnylM19WF5ipCVJYu9RdKl2aJMz68f1XZtgUw1pHvj2TXj0DqNwgJ2Ov5+hJkC86Z9e64eZyCssva1FzfKEEl8oyYLxK9yaFqPrV2ZaTGAQA2UnRVG2+KVgPpnFHHhznBg/Z73b26aiAAne8=
- DNS ASK po####ello.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''