Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",yncnjqql install
- %TEMP%\ins1.tmp
- 'ge###noer.ce.ms':80
- ge###noer.ce.ms/JrUWgFXeel1kwzxfssat4daRrDC2QEbybx2lL//GuX7OckH0rgGgdPmeFjNdAvBhtnLaBkGdte3DI3u/arOqFcDCY3C3kZwjELCL3+kvHmvhjg==
- ge###noer.ce.ms/PYBRzQMDKIdPMR3PPbrFJslGXCPSajZ1epx3uLxGVgZeJ6RNVDtf+eTV6fISCoWQVKl/CrorLMo6+L4ancsQNw1ESkLAV7/M6nwrHSGcqERmOetvyElqY21RNueSwuuZeUx2mvy8eQNoN27yZNmhQ480Wz7F8MQU1R3iGUsWamFevz1VxLS7kwMaEkhPtkl8AZAdRBdkXUY=
- DNS ASK ge###noer.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''