Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",gugsaxfq install
- %TEMP%\ins1.tmp
- 'st###es.ce.ms':80
- st###es.ce.ms/tcodFhAE7p4ExQW0Wu6zJO7i4uTzyOrsOnBvTp9DYzE8AOb4Ki8UjsJ46nVrA5m4KzDCo20n/0m0gEyUcpcllz09QQ8bvtL3raP4g7h9PPVVFQ==
- st###es.ce.ms/iIjsGzkM0B6ahWs6ywUN+7NBTOK9Be7NHx4TGSU4i+RK/1/aOz/STEKSsUS/DRP7VX+NHKXPNzyf0DYV0JqGmSFRrVJE2DKdSl1mWNDDFckCQu8Bg93+ylKB61I5u2YY4CgsmJTT7GpjncJl0RQjyfBRWVP61vlk2/Wtdvrke3G91p9J8WJz8HfyHoQd9b+9TsHWsLtJ5vA=
- DNS ASK st###es.ce.ms
- '<IP-адрес в локальной сети>':1037
- ClassName: 'Shell_TrayWnd' WindowName: ''