Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",vwrordykfegcx install
- %TEMP%\ins1.tmp
- 'mo###ont.co.be':80
- mo###ont.co.be/lMXXWdWMqimcmp+OMaz+vs2cugxlPFMYrV9saZ7ojK/7bCRxdTygs2txEX2g2KF7CJFv/i02scmh/WmZY2r/psD7eY+/LVffjzgGNmjooFo=
- mo###ont.co.be/ZLOKuRRQZ15swoo6vo1v3GjAsytDsrPY3E9euQ/sqEU6HW1IkRblrwQisOkf9uhLWZHRxYOR5B4IlsaBone7sIT+FUb1El6aDrq0gmRibmf5C3N9h3TaHfybEwhdZ/1EkVYuYws+d8agViFqd4XmMUY8Ft6+YDgSaF4cXQcsQc6IRir0tc3TsNDMwNLx5MiklUBWLK0h
- DNS ASK mo###ont.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''