Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",zbgllwvjaeep install
- %TEMP%\ins1.tmp
- 'ro###o.ce.ms':80
- ro###o.ce.ms/HtiEgRPT7aW664ov5AdMKvTp3jPRtXQA6klLFo0YoB/pdUjNt34nTikTCZffNEwwoRslobVdMeJbgXSYC6oh74fIpxzauVC8eS85PtPecPY=
- ro###o.ce.ms/HdWsxOUC5KGwv03yPWSnO4J/rrWds0Y1pe2F9pDwJgzGFJzqB2gEoSsnFgryK43RRqLBzZP6wrH9Q6tWAGCKIZ1NvZxo0DlFaD18qtbaQbVACpP2FtHvJQJvAnjBEYwZtA6oeB+79V/SvzgY8vocXYna2YAFwA53cdF16oNastB+NwBghPV3geSTkrRj8bgkoQmDSO7s
- DNS ASK ro###o.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''