Техническая информация
- '<SYSTEM32>\rundll32.exe' "%TEMP%\ins1.tmp",ftkideibhqxkbv install
- %TEMP%\ins1.tmp
- 'er##h.ce.ms':80
- er##h.ce.ms/PeEVmCZlEZGwdFmrlR1z6aNT6c5m+y/7cH9X1OKYm9nAhDY/IMGrU3/ryc9oOn8daURjmhjQU8DFhV3PyLFLqOEv5DpZ8R9zM7qA9KPZ5k/mzw==
- er##h.ce.ms/phFoecyqL0Xw9//bPfc6tbozzzXLCq3f/lxZDtF/9Gj803oA70j3tjc/NzBEldon8YtJ6nd4gbP8JwCHpRNwNTaQAo8lgasxkq2gClwxjVDibDiXL7AzomF+Jtp5DLuwHFsNwrcOP2gUe5rg2iyUR0slKr4LT1h6zdvYJi2fzbZ0C56a0HpEc5ML3D+IyJL9yWq+NNpJ1Pc=
- DNS ASK er##h.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'