Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",ygszjopktqxf install worker
- %TEMP%\ins1.tmp
- 'ce#.ce.ms':80
- ce#.ce.ms/twWgraxrhXsvvQqpRMb8OB96a3K6THO+IZofQli2F66YZwf+EseluGIA9eA2Zx+eHg1g9EwDVx9UEYfPT5kk0AN2cdUB+rsi8Pv588Fvfwk=
- ce#.ce.ms/GwtDxScJGKcTRDBPEudGMiMbrM5q1dAaEzaOJNFh3dgXVVctBGwQ1QJCxKDf+2FoFWvjymvllyZpmu859jiZJBCB1bx96hG+NvU03xOGIlTHvVRskyS2OGRq3giMOJe1XL3aMoH8mberikVzXQaIl8RrErwVTEXiCBZ/nv14mhQKNY3rdk8PlyOR1z3I/axZSh4UfQT+
- DNS ASK ce#.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''