Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",joauztdcbqsj install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\2vUAfOpgQ==[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\j+IqBqy4lM0VIBY7cyd1vbpJnmhcoongni8VtUH9LratFKk+kf3UhEeQdcAxHRhrRwFCjre32Zlev2Y=[1]
- 'wh###ey.co.be':80
- 'localhost':1035
- wh###ey.co.be/qoSnnYIBqt0uRBa5uii/37m8G3TMC4eI1/fOp71g/sl/L053U+0cqlBBTz51VDpZJgLqX9hO8ZObXAhTU3mSpFxD9+eDcKQsUwxA/2vUAfOpgQ==
- wh###ey.co.be/nPMcbRtjw+hrcuSXLP7ks12evhvDjBRkhsIjvxeDadvOI2CfM+B9BpgG/0+iIHxWIIJT6zY79Ticy9v2Q39bZPFq4oWWycjlPBFAYTwrqnWwLNBFTMy6tr8mnnh/j+IqBqy4lM0VIBY7cyd1vbpJnmhcoongni8VtUH9LratFKk+kf3UhEeQdcAxHRhrRwFCjre32Zlev2Y=
- DNS ASK wh###ey.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''