Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",mxjtizdo install
- %TEMP%\ins1.tmp
- 'ge###ent.ce.ms':80
- ge###ent.ce.ms/jvNwDluluZnd7Z2aexmZ+AIqWDFQ1JsqyLiSx8kX9Si8phEbNPV3bMnszW130xXDNQVkaR1htW0JsHsPGiz/hxBS/TOrjc+MaqOBnRSL6oFs4g==
- ge###ent.ce.ms/hhobOtPJkYTRkABZFpOa8iM/1aBCZcKd6rBr9btFcZUokVqtpDggkQarsCmzKRyhWE2KR1TgmAAMsaaYPV4jZFIv4qI4Nizzgbm9TpZI1LDxsL+Q8dXRc7+4COJbidwBNPHMdPjd9Sp4MYBDeb/7dktpqnt6vfqcoZuSA/O2PGSdtBLEO9F5OZm1ZU0kujCb08d8SLp4PwA=
- DNS ASK ge###ent.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''