Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",hxoueddk install
- %TEMP%\ins1.tmp
- 'mo###owon.cz.cc':80
- mo###owon.cz.cc/IyRKaDlXbtpwETOZgCWtb6sfeAeLcI9cmI/yKIVDAjoPvMkGKJz3arhFpnIgO7X0vXAfmrkY/L47VCKMY+/QNTX89+mq5Z6Ie4bZcdN/RQ3q+Q==
- mo###owon.cz.cc/RfaZPHDwYzgU6pwjrJGc5OHXxwaaQJ2S3ojAAYwJNAmFTgA2LD3YBD4IHD5IKUYMuirmn4dee1hfvycvOHeqGoNWCXZ5ejNsQk4vfbM72ceYKsRwiJkm/Btti7pAQ/is6oGLusFfyr0mkDi0sYET0uenxaXBgSAEJLbI2Xh/y64AOq8GLeT59GbKkUje3lVFRKozWZX+x4k=
- DNS ASK mo###owon.cz.cc
- ClassName: 'Shell_TrayWnd' WindowName: ''