Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",fzdbpxpsdcrvtd install
- %TEMP%\ins1.tmp
- 'sa###os.ce.ms':80
- sa###os.ce.ms/aHFXZDcMYW7eTkVD+qkXEq3ZDO7rslL/OuPE78nZP4rOu7WdRCXGKgfDRKaQIfrgJmYMxgf/CtZRXmXwaRFliansvswZ6Ppp8EVJn5hWbxARDQ==
- sa###os.ce.ms/PLwBlpgHH5TXbR08IuLjaR1pGbaQoTdh9aERc6Q4oHGCuZtiqqOUPQLeo5saCEFNH/hwX2ftnJsR4Be0BmYKNNXdV5hDfKAUwVNmb7xxtlKzgAxJ/ncEvcVqzbDonlSzBRzCtK3wHTjCSuZFhzzMQ8g+sp1L+224h9m5zY8oO9sgvAzrgi6jhRJ1JAQHRkrF199D7PHCwTU=
- DNS ASK sa###os.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''