Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",zbgllwvjaeep install
- %TEMP%\ins1.tmp
- 'ro###o.ce.ms':80
- ro###o.ce.ms/NuldVGQOXfTgoEf+zOXiLiEHkdm/53YXInbUvDvtQ64iwEktWJ4Hip6tjjkQwuEfU9oiey/8Eqw2ogODJ4JGpT1anHFjqCtHUbIaxZcsygc=
- ro###o.ce.ms/qiJvtmNGLxbQsmIs4OIcqwXF9xsf8hx8Bw7hqLWVhKrZmCDOtBkFa9tS+N5g5tg3qKgV4WYwWageE3Pz4LFrS4BiYq05yFocPume+W7gBkPultt0TMups/DvIq7dFZmm8e5nR37NIOwkA5E1j3OLyIFSa0fbXp+nm6Sik/DrdOIUX9jua4bu1sPH9+5758D4Sut6y/4N
- DNS ASK ro###o.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''