Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",txmmypskrqjf install
- %TEMP%\ins1.tmp
- 'ge###n.ce.ms':80
- ge###n.ce.ms/CCVtZnhCsfRe/bUfrKYOOCeHk2QC5JK2XK6iA0+xiDKLNs5d0cY6fa65xE1PdXrM5xOD3/fv8rxlEL7raWfVOBRKCt5UJzxlLjUXVAIFTODdKQ==
- ge###n.ce.ms/DqmvRCTRZV7ZFUgXK2FtRD3b9NwaHO7LeATR8lKaykup3u3UxmpTL4AszgvtWWkC10SA7N4Rew4e/FuoTooKYaPTit6zEyB1od93/9qpg1ZHOGcMWAe1zjuRmqzWRPDPlXtLoBg+MyC77IqKlJgwn4E8wc9gKWX8AgnhzcPIC6Aeq18mPl0JEe0cs/Pja5+Naq5dYefZjD4=
- DNS ASK ge###n.ce.ms
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Shell_TrayWnd' WindowName: ''