Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gugsaxfq install
- %TEMP%\ins1.tmp
- 'ro###n.ce.ms':80
- ro###n.ce.ms/gXnlBjEz49ajgYBkgIRAhkW6nCTTZyOF9fGD9gx9SJpJDFUvYgcXVN/AMserNGWGT4HRBqA/pdyicC0DD0NXdyqPpLXZEekORNhcgbWOUC43VA==
- ro###n.ce.ms/mfItzAnsweS+goDc8ku3q3OTKG3HNldlMWSyfS0TCAjYj7x2Hr9NxFqAd4v/+gZFI8e43o6h4oHIgekRVDDLhDakdw/BfUgcJ7QptTi56PRNMxRQtdEKcyuura2an7z6jpOI3px2SaubJ5xgLe5YDLNPB/0gydxc5BWT5RJp1dYmKkTnF+g/dnzvqXj8QGyGoeO+yRwvwOQ=
- DNS ASK ro###n.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''