Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",rsgafgiwd install
- %TEMP%\ins1.tmp
- 'cl###n.ce.ms':80
- cl###n.ce.ms/WtyACBfUOagBzfHVFZvMYPv5MISuWsiUbXK7BijMB1k2x1uUlT6Ho/9qjlVemplWEHraTkAg6jgEnNtJH9MtnMic/5BCj0lAQ1rhuOyHSl4fsQ==
- cl###n.ce.ms/MFneuEYbTcocptnbiWvZa4Smo4LfGjbqFwqS1ridG+bzd90o/h1/WDnoZY1pWgOIxzuVTkB/dIWLQK2nYFxNqryIsvHPs+U06JVpm3n1rXbtxqzYxKUFc5+cc+Nw8kQYwJ1V6WIRhgF/NAzRo81/FHB7K9VmRZgVFX00WXEt9A9q20rVD97BIrknjcD4uc5m1tA2dsjxpvg=
- DNS ASK cl###n.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''