Техническая информация
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",sxabmllch install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\S51NRsTsXgaAqBoOELXRDUA=[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\urwp2ZLbrLgVZ41FotNBceEv7oA5ESmDbqSyJcsGYD8Uy1jQgcQ5NCqBsJvXzuBk0FfRc8xoc[1]
- 'sw###erg.co.be':80
- 'localhost':1036
- sw###erg.co.be/CtqQLtnukI39DtQ9FY0xcYP4J5qPa5oL2GLePNSUC4Har4bHuwDmwE59016BYA0XE5LA3b6W24TEeV89/ek/S51NRsTsXgaAqBoOELXRDUA=
- sw###erg.co.be/LHvAddxb4wh2lHo8bw45rxV5y06Svu3XVZ3rXEMIUvRHy+M441+PBCh5HlsCjjHeJI48I2hFc+TamLzqcRH44ZWOH6y67QswTgf3f1xM9ryQItJMU5XNEbQKiMmDsD/urwp2ZLbrLgVZ41FotNBceEv7oA5ESmDbqSyJcsGYD8Uy1jQgcQ5NCqBsJvXzuBk0FfRc8xoc
- DNS ASK sw###erg.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''