Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",rwfwvvnhqwqfu install
- <Полный путь к вирусу>
- %TEMP%\ins1.tmp
- 'ge###e.mo.cx':80
- ge###e.mo.cx/eZWCHxmNig0DrRR4oHfowU9emeo9sEqiAP0NVYztcGGjHV4bnSGQcOj578wZBS3lAs+rl2w60qg8QkRfmHca9QJBxFjsJ0kwa+5Ksa/4r0s=
- ge###e.mo.cx/pwpYgSBr9hWgyHYHfZVNC4GoJm9NyUlLopFxxyxXNK9dEgJN2Kviwof/9R/+UX0E4oNW1eUGgAUzlHV2lpVGxU4s97TS7B/abjFrbs/4kmE55wey5rNE6kwozbyvtXxWQWmid0u7dW3zLqPGhJZaot0XVmyFNjxXOF/iNvZ6A6yBV9Sg50UosDoItxtZbmd3qWtL+xb7
- DNS ASK ge###e.mo.cx
- ClassName: 'Shell_TrayWnd' WindowName: ''