Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gugsaxfq install
- %TEMP%\ins1.tmp
- 'ge###e.ce.ms':80
- ge###e.ce.ms/eTXqvLCa05AGoDr1jaJ7xVatcBx7CR/ZvrxeiRbZWnGSqRLoqDNzSOMx7jEvvwptJZ9lGOPCfU3wQXtanaco4fZDiJl/wG4tF1H3LLuSvLXv8w==
- ge###e.ce.ms/UNZLDILcPqfCyTRuGf2EvENy9/bmABwCVtPXEDNC9pLHlAtLdgnu2SmsTO7TlphOoFY//rUtorj8UPAD49lonpO3vgeK5rkT2SojIJYXD80/b4r94IZKAdsTwDvRoY8MVRH9Or52snJPEJuWIuRChh6PizvrZ7MCrTjdKbg7FP+bajTYF0KxuQJa+gFuImCsQgI91in2tzA=
- DNS ASK ge###e.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''