Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gugsaxfq install
- %TEMP%\ins1.tmp
- 'ge###e.ce.ms':80
- ge###e.ce.ms/hbGfbDHlaJu6WKrBlIYGxmxkXVWwfbjPTrFC8/jM52eTTEbWgdZQd/cwhSp4fmr7vMEE4rDV0St+34DoYVLUd2d6hxvrWyGcISEFEL/um5Oopw==
- ge###e.ce.ms/cosclROfzRT5pZ+DFXoZRl9dHPlARnm1/KDkJAx2Q2x/X1gflgEo1eB6l74d6DQuknbnIinJZkMZm8OQB0xnNX6UXJsN9xO5s9ERt21l6zuGl4C5k1Zqn5mNSqy5XFHHGyCiiGG5ReYHBEWsP95/5RiP5a1pfIkrOyAe6sFHjazyF+589MffGfTvrsya5e/Hz0W7qyWrAEc=
- DNS ASK ge###e.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''