Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gugsaxfq install
- %TEMP%\ins1.tmp
- 'ce####nder.ce.ms':80
- ce####nder.ce.ms/oVmeDlcwl49IcxRje4OWVEdbbOjs2hlBnDKxUVe4HCXCEfagnEijFoYL13qVTrbJOnGkkazG/Xw+tE/a4rNgBdCkwiA7nP6RaNMwWcpRsAp31A==
- ce####nder.ce.ms/MIhovRNBskhtoG9fJRJiuKXCuO19rr/0YXrhGzlkyosbL0lWiQxPdnenS2Woyna3dIHJ82jBlbhia/NtT+VbII0G5LyT+KjPYeTmW/N5ReuCYCv5Kmot9CT+OO8fbL9wBACEpVd5BIY7FafJjbQpbrYS7tzZnbqPvrSZRhNPAObEi/Rt4GCrTn7oNWQ8L6K/x282ZyReScg=
- DNS ASK ce####nder.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''