Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",zbgllwvjaeep install
- %TEMP%\ins1.tmp
- 'fo###ter.ce.ms':80
- fo###ter.ce.ms/EFNqqEcBEyZBmR/Jxy8X16MGOKgHcwXh1uO+J7OuguelRyzEWYx/JR/4ctxTNobac8wjeAcT5Q8b1d5NF3EwMbB2uUdyEmcqmlkt6strDEASmQ==
- fo###ter.ce.ms/NTfAYevP6m8vIQbl8CO65cUUb0eMAqhfmuX5IUcE+6IsTxoHLEMnjtBPx6Gm8lX8ojNZ4iYcdSX49YhksCoYGRgwzTd5VDvYAZXMzvRSWMC0z3WTdH6v3/YyQtK+zRNqFJzjzYsmcaMVQBJrirHzbuec+vNTeWtqcmfK9WAErxONeBqDC2o0cDF3JI2mHEOsV2t6l6UlnWQ=
- DNS ASK fo###ter.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''