Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gugsaxfq install
- %TEMP%\ins1.tmp
- 'ce###etto.ce.ms':80
- ce###etto.ce.ms/WZVkecPRllMwd6KExxH5XFO0k2ZLL5TVzExQiChdCykmyCN0245R4gEnDW3ZKOmvD9/4HrCUIiIaIhU1Z24OwezgYgBRmKTpk3DgQj+tNKM=
- ce###etto.ce.ms/zJloVIFlokzsQIfxnGvUlUu879atbkiGxngkK/4Y87mP2WeY0LUG64MZWSCXbKbpozcDkM76wyNMLN6zMwRf074a1jzktmnAsJiZBjqdzNoWeDBPOgv+5aTi6pZ9rwLZVtoL3SsmF5SmW/KHRyN30vGrBgQ5B0G3HvqYVj13vaqqXL436+SWbJSFbnL7moh8cymIXEmz
- DNS ASK ce###etto.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''