Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gugsaxfq install
- %TEMP%\ins1.tmp
- 'ce###etto.ce.ms':80
- ce###etto.ce.ms/SITJahNIxPqLndI/n2yGmMwNnSWDK3xEopIC6PxM7mvDMKVzDYvMyeej8G4u0bbOzCDFaz3+8hR/ZkX6lly+q4LUuuwlNnFycuHIybrUGorvhg==
- ce###etto.ce.ms/AUjiyrMg4foTEtohPnradUaEuiiBZ5Egxs6PFPtTl3MlmKxzHIQHF6jdPeotaOOs9emj3EK3taBUzfFsYOwi9+BAA6/LwqqF0PIb/0omPDcV0QQwogfTp+HEY6xLzQd7mfEu5gBvAQ5ppJiScMh7D9DycuuF2nMTFqEYCpdWEh1y8k/rx9zVV54ySc4v/PDo0oohfXLDnTg=
- DNS ASK ce###etto.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''