Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",vgfauphxk install
- %TEMP%\ins1.tmp
- 'to###es.ce.ms':80
- to###es.ce.ms/EIPblqKwiuWQRHwdg3AFIetLt6lkJ01u5ulUK4GgRJy8V6Blqxx+dAnBeFCx9F3nA1828Y4GYTfCHejwwhumoxthXqCGcin7ORbWL171VAw=
- to###es.ce.ms/vHByhURpeOrlkvtmn4c0YlFwkCmcVo/B+K5mQo8iwwRp8DSyzHYVuMzUQ1U1/cSZwxnITxSTnPo61950zW6I6wBUVxXQrB3YXe71DZhsHnAfLHi2BH5Y9DQ4pubHc+ECw3wBtcPseb2Qa5GNq+KjhnkC5JawBZexkXRhnjuxtq+5OjQFc+8EXDvWL5eIQW2TcUwHTeN1
- DNS ASK to###es.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''