Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",hwivwnxkd install
- %TEMP%\ins1.tmp
- 'pl###onts.ce.ms':80
- pl###onts.ce.ms/rSClvIuKjtogdvfAqlbDpcc3zoMAQoPGzHZ6yKdhjjMLXbBuqIRrCsN7I5LS8rdFBQd3q0lHzunhT5XhkQSjpC/GmwEuNLYQO14w8Yhs9nXIMQ==
- pl###onts.ce.ms/ukpYCsMd5kj5HnsthlnQ8+hIisFUTei3LMBRGu/LkehxbSpGCwJKDSoezuBKTFmkaJN0lNlNvXiZ+pLIDlCrNYLn/1yQrVuUN4QO7/Bhne4XgiBq3hH/9+HqgHSifCsqkm69IACWq6iKo0dc0uBz09pCiVIk743vuY4tMqCl8sQxwa0t3a+iCyGwR/VM3uxO9PNbpv8fKfM=
- DNS ASK pl###onts.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''