Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gugsaxfq install
- %TEMP%\ins1.tmp
- 'st###es.ce.ms':80
- st###es.ce.ms/tdgqiMMimE9OTnoAdIieBQD9SfsTIu2g7ZJ03PsxK7b0D1j3q8GXOTHZ2ekNah7Rz02htwjxuY/oYCLw+PsdMmvFZPjbjiU3B0rnL7r+Zjc2/Q==
- st###es.ce.ms/LZyrtNsE+mXYHvHe2Ec3sHPoAgehEvmUFmA+gNrQxKbTkk/+eaprFx1aAQfrL+xdObjgYs7SES+aDho5hZDLpfw1VyCXLIM6hGohHnxXzFyRv5uAU0It0kvZSbOngYL6ES36adwOdDdlnQDh1XPaV9ssujqlWTIlWYxgtgTuDikd+gBA58eOTv4VgZdup9jX+uvtzsUagys=
- DNS ASK st###es.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''