Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",vzttsinakyzxxuc install worker
- %TEMP%\ins1.tmp
- 'ho####monn.mo.cx':80
- ho####monn.mo.cx/zgAgrnaREA8AXCVl1Tnwq8x0tosY6NKgv65lB3BpHuY585QMkXhlZnvcRTt0ycI6GqavswclRcfrpreQe8m72KZZSl3H75RIhrM1yW0O7E8=
- ho####monn.mo.cx/KnFqgfAOS3+aw5sv7xuyft+7a5TgFGh5SJkV9kRPYez/mOFjMT1OnYd0Ep7H30V1PJkl74jEPhHYsFlv4Pp7iVq3/ERc8jOh92LbUovaKKSw/9EbzXthk2TqzwQghTNqc7yNHtFqiGrgWGISVzFGv0LMvzDa+Qcs2UrDH+Pcb/YNW/O0oFJQrXP9yFbOhU/DU4sRy5wQ
- DNS ASK ho####monn.mo.cx
- ClassName: 'Shell_TrayWnd' WindowName: ''