Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gugsaxfq install
- %TEMP%\ins1.tmp
- 'st###es.ce.ms':80
- st###es.ce.ms/njvXJvWcxuMjCgAUh/Tgjfh4N91uVhMamh14ItUxyMztOOFOED0RNzdd1q1BgCaC+Igspi30YyQYMFXwcfhf4SenUt4EVwCeBAheFkWhKWwyhA==
- st###es.ce.ms/KEKWZyQwU3PeMmGRcIFt2NeGVGE14Gmj/A5XyQ2kwG3f38YZrCfWsHB9kMNqpB5qSC32JZZIiwIPrj65HIZVGOoK1vOw8rHlSfiL3v7j6SofmtdWoV8HaK6H6Q8/CZq2xycnkH6bV1h7rIe1fMpm+/qfJ8S2SAf41cSsc8Eyd3l/eavB+CIWoHCWrfXbQundiQUuC0VojjA=
- DNS ASK st###es.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''