Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",mxjtizdo install
- %TEMP%\ins1.tmp
- 'ge###ent.ce.ms':80
- ge###ent.ce.ms/WLrAkZFxVebmgD6vP4sieEMdoHWK6kgIh9fv5jfZpW4+VIySCWSVeP6o3/PuoNLjV0aCljRR3IoKnzb3RyGXpqufj1/RuJwDCri8zzaK+GvkBQ==
- ge###ent.ce.ms/wfSDGNOrSUZQv1TFKuenYQfUVWAlNZuKl7LpZaGIqQnSYzd5hBqLx7ot43ly/8eLUOMUVH23LVmxjwdIjran51U+c9vi0SfrxWIaYFrNxaWg/lCNOzyyWt5XVqlkxZwXG1z8EyDZ0IFLfdgLAv4u2U1E2NCpxruiiBdEwNv+r2YlRWlolaOoVVMxzDJlwVsMmrArx3SkPP0=
- DNS ASK ge###ent.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''