Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",vgfauphxk install
- %TEMP%\ins1.tmp
- 'to###es.ce.ms':80
- to###es.ce.ms/tCuupZArDmlxL7pwYfU4yzpwFrT2S1YVqO/8eMpRE8Rb8K2ssD9gOFHcMoNQ6tJd+RwDMExjpkhRUn7nCXYo6bwjYO1U5ny3bz/VSL+FwyY=
- to###es.ce.ms/HfcAyONV+xvmi+mHNE3siGSRRXxzM/V3/+td53gu5NudusTgIIr9hKU6kF9rjTYBUkSuX4Ch07Xs5iJFV4J28d6uV5n9S0w4JRqwkhplP5OvJ1ORX4h1Dzh7xgHch+WjPAf8Uf6o7lraYSb2u/QZyTMS4utSCU4AJTghAaSAh42AnE42TSagMJBI/RT87urIf0AZco7U
- DNS ASK to###es.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''