Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",guiunlhhvf install
- %TEMP%\ins1.tmp
- 'ge###es.cz.cc':80
- ge###es.cz.cc/ASULHgUdy7NOE8qm1V7+p4LjDaHKAe2zPYKThI13FwJpVpupDD+PUx+5x1y2W5FIPtTliQmAKMawOR8k0yfXnUFCVoeD97/JUQy9h4DsG5I=
- ge###es.cz.cc/SpejlWzpPnwettgZrWSIu7/eJYs1ChINIJ1nsvMhyhoe96ems0oe/CVsYoLV49Fn9SOwpf9PBV4KhY8cNERy3a41ZSnol90eWm8hLyhv3kZyzw6YiFChSSlE8unUUVsRzY6Kd2u/CIAZn/nZeAWNAdm9nNePIK1DpSA3FryKnYyXkiXSQ9zOvRjFPryEtSKmG2kUtWMx
- DNS ASK ge###es.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''