Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",rsgafgiwd install
- %TEMP%\ins1.tmp
- 'po###no.ce.ms':80
- po###no.ce.ms/LjVRCVLWIkZeExTuB+pohZb+CVXEvRlQN6t/W4YM450zxo26LUfpHSr3/1DSYUG4txh8rDVWjGZ48AMhmt0mpaG/vfNcfWmYUG6mjMrqWAzE3Q==
- po###no.ce.ms/IqUQhIXjWhM/W9FP17TuME5dWRXNioo851XF2ngsAKitbC6ZcIeiizg729ourfHo+RkF7vwMXKeZbaSLtXdkaAfIf8w2P+VaXV5KITFKeVnmieR2VbmVsFQiVL92nTfqUDSJktav0eikyzesTp1pfgBSj2nifKIZDX4qYurzJ+T3v2x5Hheg71937rD+U/I//v4WhWwM0AU=
- DNS ASK po###no.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''