Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",rsgafgiwd install
- %TEMP%\ins1.tmp
- 'cl###n.ce.ms':80
- cl###n.ce.ms/dRWfOFhXuSaz1N6I6TzwzGaWRx3NLQ019iqbP7CBPTfT4m5yZU9tkFq4K3aBo4RvEO/XKxtUCBUENQSQY9yqulX9vGC7mpZ2M1XJJ7s1wx0Rcg==
- cl###n.ce.ms/laaiswFrX9a2vTuXckq09JPZ7blpLCzV97NoGnqBVia0SUTix0hQiBBLWcCx4lY5wM847ksIQdvAAD+Ys0Ax74S5zWCLB0IlDtjAjoy3UQWS/DyU2fqOAU7O15RdGYEhk9Pmp3f1RoIE3OGiXkBo3GgkdGJSWzNluG91+p2BE/Sahj1knUVUF/x6MqPzQil8+2KvcgjzpJs=
- DNS ASK cl###n.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''