Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gugsaxfq install
- %TEMP%\ins1.tmp
- 'wm###on.ce.ms':80
- wm###on.ce.ms/OeEYmgBwrlMATXw/pE3c5QxWvYMny0cQMBUD8opmNsULxln07mo9xtVC34BfjlDXgtBGGXqPu+dW1Qs9NE18ND/c+Dn7J6ghuF1WanQ6cfUXAA==
- wm###on.ce.ms/biCArWhaNB3Vrpvp7UfJDMF8tHbMFsZrr5cSt3nuSt+ZEUqdNiSFGHmwT5BHAIE5fc2QamQpVgBY3o4gyolvrfFoA3Pw1zyhiyMSwigup+npH0z3K8zTZPwyhRK/C5BPFwo2Q52QuTrvP4qFuqANW1I3oSR3milrjUu17p66APWekmh5Amppkq4Tojy1DU9NtgKnp9eN64Q=
- DNS ASK wm###on.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''