Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",zbgllwvjaeep install
- %TEMP%\ins1.tmp
- 'fm##.ce.ms':80
- fm##.ce.ms/PuPoEHJAk+h811mxquv/SLEWaVbyPxgUx3Ltbfco2niUSRgxOMxsejIqEmuK3KsUY2mnVzkIK7yR7QY5NiZqyZBiy6SPUxvgf1BpgjYur8/yJw==
- fm##.ce.ms/QsgFEhlaXgz03LQnrNFskEgu0oVoAKkM89GC9v7oIMcvSFtoxUl0uBdiVZwKQGe/Gr9gGi3f0pX94a5ozDf3Utjj23+YzOa4uzw8F7aLt8rDwBTtIu+ikhNvh86I2E2CQniSuP4qBAEspW1EMUPYBNaylFDWTBX/cEcrFVMNEzLAPb57K13Sg2C4p1/z43eLJyTkWMhUfgY=
- DNS ASK fm##.ce.ms
- '<IP-адрес в локальной сети>':1036
- ClassName: 'Shell_TrayWnd' WindowName: ''