Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",hwivwnxkd install
- %TEMP%\ins1.tmp
- 'pl###onts.ce.ms':80
- pl###onts.ce.ms/YsJbNghiAy/VDY89iDGnvc1xMyjlbYpPU5kkoT3hh2on6anrh6nrjMe1OY/gzx0KYv/IhPT3wfmlBUkHSrf4SqQSKgXfY6c2XDW2i2UP7AoGTw==
- pl###onts.ce.ms/ViDlwHMRhlcFyK9SJIVk2koi/zfCD6g/DDVJWIG0/LmiEJ+gBxtL6Bc3f/gYUAxrLmy2iwAXL4N+/KgV75DbL6g0vsKnRjbHOkOG08doAf+VSr39gYOegqTFsE/hYthJUf0083cpMq2s9LrN2bOfZqaiuF1+qRoqUc0sRz7a25v4yfDppDcrc6AwVxpFtoksLD40sQkdFUU=
- DNS ASK pl###onts.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''