Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",gtrshpxcbubjz install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\yEdQzlYiMWvxCHCaAGfMxebDRoe5CpOWFR5he68q7TlyZjM3x+hhMBUSUn1oQyKflGDEKRVr7sJbaoTtiTAKVfXIpBzbEw+Yvug==[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\00TR1mi1PYMHUaSZxalAhc0sQAC1yTwDdOHqJVgZXbfDS2OZ7I46nv5ixAlP+AaAcXtqPh4hHbXotvjWHr0cpczguTjQsi2OEskzTtrXM=[1]
- 'zo##.co.be':80
- 'localhost':1037
- zo##.co.be/cwDZxIEyR+/yEdQzlYiMWvxCHCaAGfMxebDRoe5CpOWFR5he68q7TlyZjM3x+hhMBUSUn1oQyKflGDEKRVr7sJbaoTtiTAKVfXIpBzbEw+Yvug==
- zo##.co.be/KdnEiaYvQFz5YivKYP/PPgVG4IIp0ypit7HMpmZkUfeLMjyWUcf5Sfhrum/34iK6havHPux/3cIt1THrAK4+9xVIRspAU+JsX/00TR1mi1PYMHUaSZxalAhc0sQAC1yTwDdOHqJVgZXbfDS2OZ7I46nv5ixAlP+AaAcXtqPh4hHbXotvjWHr0cpczguTjQsi2OEskzTtrXM=
- DNS ASK zo##.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''