Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",kqkpxvobo install
- %TEMP%\ins1.tmp
- 'de##.ce.ms':80
- de##.ce.ms/HxxSKyzfEiNYUvZ5sitiuTuzpjY2gRxNyFgOQW+ydJLuwloK+HXkp2kZkx8eUIBJoEyVpmhssLBNXgLVgelzkeG2Yyt55Ckli5gQJT8w074=
- de##.ce.ms/KYURxqxltNptv8d6QSiR/gEJY0z20Na+udxAvGPQlxr2mS+Q7f44lCzzRoNqplK1XVp2Q1eHlxiaI6/LAy/pFH+QUyT9H6tq8f3YMKJGT7b0356nVig9+IMkMjw7jWeY6NZa7X0V2eO55fbTDzfUpU4AOiLF9zd6kbkpH2S8zTVvZqV+JOIVcl3X7YZkYPU6U9h4oaqE
- DNS ASK de##.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''