Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",sjdetjsalupyb install
- %TEMP%\ins1.tmp
- 'hc####rmon.mo.cx':80
- hc####rmon.mo.cx/IadKqqfw15L355j02BJ8Nhu8I6jpxxJSEx9ivnDtMMQYagRB83sAYFx7WPOPZNNx3ZYJniWUOKo3eqAuyOwEYRYxIIsYfHZTfSckPD0g5xY=
- hc####rmon.mo.cx/rKLMUqNQ3FMTkE42TBTUFV6KKkuHo1q9Bmse4qSP9xMHv+zSy8sec46DgeiLvvdXGYmS02wW36eBMu6+20Ifya19ztNYCMRX/gIX9n4m08NP+edd43eYmkUSXM6Iyj/XjItTYm7nwHDbN3vRRle5a9qHoTX8zh9O0KrO1tNjP6SpYi+Ye//dMfm0QGF4Sll0bmYnxTwE
- DNS ASK hc####rmon.mo.cx
- ClassName: 'Shell_TrayWnd' WindowName: ''