Техническая информация
- %TEMP%\tmp603075.exe
- %TEMP%\tmp603075.exe (загружен из сети Интернет)
- %TEMP%\tmp603075.exe
- %APPDATA%\IU881M2U.exe
- %APPDATA%\IU881M2U.dll
- 'do##.#insoft1.com':80
- 'do##.cjnovt.com':80
- do##.#insoft1.com/setup/p002_cjn1/setup.exe
- do##.cjnovt.com/cjn1/iemsav/bhon/iemsav.exe
- do##.cjnovt.com/cjn1/iemsav/bhon/iemsav.dll
- DNS ASK do##.#insoft1.com
- DNS ASK do##.cjnovt.com
- ClassName: 'Shell_TrayWnd' WindowName: ''