Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",zbgllwvjaeep install
- %TEMP%\ins1.tmp
- 'ge###ne.ce.ms':80
- ge###ne.ce.ms/pfRmqGQhgXFwmITvrEIwALeXrRW/IYpWbsM6oxBXz4LVj5mkt13vyD011/82ALXUU3ZuSLg3wnxKyKdd4sF8iAZpUdvvpp4sMhGk8wZ8MwvKyA==
- ge###ne.ce.ms/wlvPSgrONV4noywsdi6jXP0dLAA0xGnBUV0e+b/dtHO7uMz/V1qOk3Wf9eF9Lv2XV48txNNy27OKTHLynVPcnXCXPFmJD5kHkvcsMFVDGcklQZfN9N32LaZeT4vOTZQQg9vqD30MeayJ8B9vlYkRBGnlBla3tVB333SVCrwYimmseQoQuIW+lownOztNXrvHliBgeLaas6A=
- DNS ASK ge###ne.ce.ms
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''