Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",jvbgeloznihsvw install
- %TEMP%\ins1.tmp
- 'ge###lo.ce.ms':80
- ge###lo.ce.ms/pVTGERlBA/8Vr/DCr9UKDD4xfEXK+gh2o7dZ4mzoZy6ZNcPsrs+zG8YPdVNjoQjZB1EAbAnkLxYrkX9aRgSVjN295ApWbuN0okCvvuuj+9g=
- ge###lo.ce.ms/ZowVXYMxqJFoYInJ9HA0Zat1mk56wfKR1dhoc4l1T+5kRjqedhgu0Fqy41CDzCrJ5HoyGbOy6C8hWHTODzbgwxiqLXZ4RhTzeC7wRpVi3n2lVrdnBV7obyZdDEkWYb2vtIPj2BfvWOHeEXELZcvmRpr0kXafdwTQBLtgAx/xA0j629205rC79hGawL7UM+g41r8yupCk
- DNS ASK ge###lo.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''