Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gugsaxfq install
- %TEMP%\ins1.tmp
- 'wm###on.ce.ms':80
- wm###on.ce.ms/YdEFYwkysx49AaCdwe1G1kSdpiafERmmplpiyssso1T0cJUnYr2PC0S3lLDbKNLVlRZLNkd9TxVMt0b+CD+s4lpjWv1mB/jwqpWBynBQdYkl1Q==
- wm###on.ce.ms/ZDojvHWgNWmOyf+1uIK8X6DkpC+XfJmgOkFK4ozrU/uZy4ZseIDfwBX4vtmXxUqWuzOaPrfqg69HZme2A6xHcdZrkmEK9pnbKnEDhMp4IVvn3a4joKjMQyDVbBgzXyhzuD61c0Hk189CPr3WbBisH8LyFF8AM3dy0VepwZJ5hIYkjMzYJF/weMTCCWiQBZZg40YM35NkLss=
- DNS ASK wm###on.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''