Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",miwmaqdhkqwa install
- %TEMP%\ins1.tmp
- 'ce###on.mo.cx':80
- ce###on.mo.cx/OtqQGHulh852JA8n5IHKQ7/81yf4+/dKhyl1IgplcNglQTe14An/9RTM4D64yDZfBrlc1QRA/6jR6yLwcv6/+6zgHPHOzT4rHl7OvS7LeLs=
- ce###on.mo.cx/VDFYHOTOO90KqvpCeLD9sCnq+VshAGgQyIwC2VDxHywhUVoz85di37Iorj18DN+smhRnLXYrHdG67zz6IpdUL1ror90kx6CvtdAaOkw3Xwihv9yxRB/MaFh9Ib3aTmZahy9CvhJMj7hxR1uamSqm9mo4eh3sjjRqjp2h6ivJh1+XKmamgUTRjWDLWrRG1lNXt2339Pbt
- DNS ASK ce###on.mo.cx
- ClassName: 'Shell_TrayWnd' WindowName: ''