Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",vgfauphxk install
- %TEMP%\ins1.tmp
- 'to###es.ce.ms':80
- to###es.ce.ms/SUYBlwWvop8S0Bet8uB/gLB5dbWsn2Z3QftM/4L1gbT1NdcMyskYa8/eoLpoxlyj7Z3NzhiKvQ0htKotqZw2BJp+YUIGB/QTVmnksMVoZAo=
- to###es.ce.ms/KlasjJoGu9uyrSEr9HJrAnIsArez56OIt1xoEdifdit9jMisVWbZ6x5oPqAMsyaLldV78wT1QlPJvI3YHadX2S1j7T8LFFnIG3RTSjntrva4JAkiBvhvIjaNRup+/P5byxdj0VCXImm2FVRXbqehghe/eypeld9HYectRtRQwQr6TXA6hFrhcrtzwnxYf3sFmb3tVQ3P
- DNS ASK to###es.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''