Техническая информация
- '<SYSTEM32>\rundll32.exe' "%TEMP%\ins1.tmp",ftkideibhqxkbv install
- %TEMP%\ins1.tmp
- 'er##h.ce.ms':80
- er##h.ce.ms/PKqOvaeEMejacTDmqyMIXCAtpWlU+416GVVG2I7Vt5qNjlXG4P1Zw/+2Rvc/N061akviwtPNc9NTX6ejHMxf3tXMwb8bA77WSbMymRmKI8U7CQ==
- er##h.ce.ms/CzjdmBvW6+2s9ILPQOd02BeVGfXNwNY81YrClJv81h1a/5dSXq3JklsSw5B4ZY/JafVWT6jrdHnX9bd48y3P6HAHWR12NflQW5rC+MIwX2gBc1fBRUPicIdKbtO2AR3ASku9tSoJCXNKSLuvfh9hQqoKjzWK/PURSETWo2hXAT2L2TC9saqWDfdClSgT7H6R84RCQ6150tw=
- DNS ASK er##h.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'