Техническая информация
- [HKCU\Software\Microsoft\Windows\CurrentVersion\Run] 'MicrosoftEdgeUpdate' = '"%LOCALAPPDATA%\Microsoft\Edge\Cache\Update\msedge_update.exe"'
- Процесс pnsldiu.exe, модуль Amsi.dll
- %LOCALAPPDATA%\microsoft\edge\cache\update\msedge_update.exe
- %LOCALAPPDATA%\microsoft\edge\cache\update\msedge_update.exe
- 'fs#####z75.localto.net':5272
- 'fs#####z75.localto.net':5272
- DNS ASK fs#####z75.localto.net