Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",kqkpxvobo install
- %TEMP%\ins1.tmp
- 'de##.ce.ms':80
- de##.ce.ms/QGPkZiVM52RoB5Dw78iKnODuRQkm1K+eiEbO63NmlYRNpMVgDZow7ovhBe2Ul8Rw7oqWurKRsZMKiyIiYAFpTzM134DBmzQ7F1U7WeW98lg=
- de##.ce.ms/vTvLRUAcE2A/jgwklMklkOE9nJbenZR7w92E9XIQFDOr3EamUVd3KDnQ9NBF9XiZSGh1FDtSr/Z95qjXZmF3Om4evXdy0gotCJHp+71wzAFH6EXsYSlRhORwGZcQYn8JpFcxWoIiAfhwdnMhutplCiDbJQQl+oymuIGFk4iPMhjNyTW8vl1t8GaZPG7SdGUhly6x3s5c
- DNS ASK de##.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''