Техническая информация
- '<SYSTEM32>\rundll32.exe' "%TEMP%\ins1.tmp",gugsaxfq install
- %TEMP%\ins1.tmp
- 'fo##r.ce.ms':80
- fo##r.ce.ms/qvUdoyRg2WaDDbyaPQCyI7B245Wqhk9eKCQVNiZc/l4V+7RABZ1mUEgtbKHETClwOV/lVzw6OxPxRWifeK22KpjD6ptfTnNVdLzuWUPeToeRpw==
- fo##r.ce.ms/YLGTHJHeP9GVtw2b21Cw00ZpqHpFLYbLK+taD2fFth9G6iTHSBcDGbRqw2PmUqyLhhid7fQZaQd3k6NZJPwZCd14ANXhL2iRKlqMSZzjqiR1pL8wkIlC4jZW1BrPnjXI3/K5xOu5KeIPqHWkAB+TiEIFFwoDv4xazI0sw934Bm0l0PeRSbHHHcVr5YDJd5lPHWFnEvVdmH0=
- DNS ASK fo##r.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'