Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",wjfmiaxvnupmt install
- %TEMP%\ins1.tmp
- 'mo###ong.mo.cx':80
- mo###ong.mo.cx/YjXOlWah8VCIoueDfKRVn7R3sT2OlIcdiUn5RbFxoh/1DgjyJedaJ/SUgVwkftlgp+Uo2PtHTclZJ+raaiVOpFO12UiOWFWFQP1UTJsGby0=
- mo###ong.mo.cx/rMWWGpraQTyqv8pyZv04IFq3XBXiDqwSAtV/l8HKRfEKZLzt/Po4rDLkPlHVOqmcCZKYp1UuKauD/eki4wliGFfuVRBJtno2LSzP72OZmMEviB1UBNtOc4HEm0X8CN3eOu37oeAks2zp854DU7N4gzdbaaObVkQe2cfHSqZ8WmYzEHfsiGohPbJmTYPo4cu6KzYL9Sth
- DNS ASK mo###ong.mo.cx
- ClassName: 'Shell_TrayWnd' WindowName: ''