Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",mfookpmhgp install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\PsGsf5gPEjiUCYTc4QAPhbPwFJgCbDY3UldgqDLAxVrkA==[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\ofrzFK0SAI9TjmxAgW4kYd7Ryy64BtvaiZrEaYJZHnqY7v5+e8Du3EYcKGXXWJWDm8FAthMfAmye7dWLoeubiDBHlOyyRtEXc=[1]
- 'mc###n.co.be':80
- 'localhost':1037
- mc###n.co.be/TJMjkmeyguOD9uAMBwGg6/JI0oR4lL5p89VGnsMMtJP1Wg/o27bAM0oHxr27pf/M/PsGsf5gPEjiUCYTc4QAPhbPwFJgCbDY3UldgqDLAxVrkA==
- mc###n.co.be/RwfhZMdjg5dbwxVABVmi96NZHqlLF5vtFFlEUKEHH8fePWFigMFDsjTZoADe8iI8zlaWaHdgd49E8PbeFzphdGpR5JmFSR8J6ZHRSNPUs/ofrzFK0SAI9TjmxAgW4kYd7Ryy64BtvaiZrEaYJZHnqY7v5+e8Du3EYcKGXXWJWDm8FAthMfAmye7dWLoeubiDBHlOyyRtEXc=
- DNS ASK mc###n.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''