Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",mxjtizdo install
- %TEMP%\ins1.tmp
- 'ge###ent.ce.ms':80
- ge###ent.ce.ms/IHaGybWoJWUFAER6LYwI3h4MWUulke3watPkpBUTIoA052sZ/79meOtihSHU2PK6lrktIV/ImUzTSOmUuht4SRUpsc4JhYz1b3BEsi6SBJcNgA==
- ge###ent.ce.ms/IGHqebyOpLSgt3iUDDqEiEbLxvIv8tcUZJzB8Nz/5OjbHDDZoT7Hx2dx/nUVzFxmmTq+wZAOQ+P3NLa4QQ5bXpORISne7jFDztvUUjIMoiNkDBGvmWZT1fMR6K9R48DuyKzm5UeJtxCbZk9UFCBN2EN8pEs20q5Zwri0/pjIWwnbuh7Hz5tLbkhpG0rrKUlOwtPhLzPztZ0=
- DNS ASK ge###ent.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''