Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",ixbhfylh install
- %TEMP%\ins1.tmp
- 'lo####felter.ce.ms':80
- lo####felter.ce.ms/SZQSERjA6OmmzGaYasGDen6luzIsdU3PiObaUm0TP87MaMCm3CWF8dOhDlGK+3UUzzmHbPAceLbOPNoloRKMQ63hEgxuiFXmXRNusrXj9TDvAA==
- lo####felter.ce.ms/ewrLtOhSPMMwtJKEafDE40fS3Mzv9aFiaXx4pZKUDP2L8D0bANubIIO/FFcGtdsIFsST9WiOC/sGqtyFL34DxtucVvhtNRvZO+UvUojIbfFah4R1mbFVOllXm5i/U/tJ6XoYaXIVaxxnD6Gumr1cxNlj4/a/f6so3KAn/+jg0OrJvKPiVYeQUd5xEC+aOyoA2cZenzIVZlI=
- DNS ASK lo####felter.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''