Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",vgfauphxk install
- %TEMP%\ins1.tmp
- 'ke####rong.ce.ms':80
- ke####rong.ce.ms/URXubQGfbACjNUJvPkOKeskNZUEOdqiFx1+fopkr0qEK1onOfyH+MIsREv/+CiyAHOlRFlHz7AAwnyte13Mq5QFaj3mBVAkRf9+hgkP6jqwqUQ==
- ke####rong.ce.ms/AeWVRjPLQKxoP7qit602gNuWSiWziGOO0OoRTtuUc+5/NOavhi2BEAOJgKvAGJ+SJ7DUPr1WYpps1EDxfy01J8LCgIoCiydNetLbwZ8xhpV0qtsCPB+cUIbqXzIsdPTqM5SS6+BdjInPGu6YFxqY7YKgO7e5zeyIyLSSGmgNj7ftxzjtyGoT5Cy+G3OjiTiH1t6cv9wS8E0=
- DNS ASK ke####rong.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''