Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",vdaoodmcxmz install worker
- %TEMP%\ins1.tmp
- 'ne##o.mo.cx':80
- ne##o.mo.cx/UXJVePSrfFA1mUIDgVudod8wjKTJj7Em8IAJNlb8vl0ttTEdEhFfL5HrUVxYc1ah9BCr9YVSReeMu5NqjpotRktzvwxR8U2WYCDrHAz+OuQ=
- ne##o.mo.cx/ppBhpeemn86fhNsVeYILbRmC/ftMWPtDQNHSHm13R9mbvYw3i3zWEBwn5kJooXhstXaYr59Cd/MK9dmag/kMWbfwfmc8j0MG+F1M9qlgo6pDScjRdhkfJfjEn3Q2e16rh30wupmA0WbChdt+3K4VuczArcmLHEOblyw568rhy7M9i5r6WR1m07GGZdx5yZZtUZJY4jLl
- DNS ASK ne##o.mo.cx
- ClassName: 'Shell_TrayWnd' WindowName: ''