Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",tuqlcuivxxy install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\8COyRQ0gMRqKSxvZW9g==[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\QEyA=[1]
- 'cl###nson.co.be':80
- 'localhost':1034
- cl###nson.co.be/gLfrCcBV4LYNWzurt3oX1ZcdBCztKSoRJaifbP5nm5Fm0xV4VljnnhdU9FqNDnr5nrMaQFRb0XyW5rfQ239wy4vmUx/8COyRQ0gMRqKSxvZW9g==
- cl###nson.co.be/VbVhreisgVzWWCcO1zyabwxjedzah0zNJQMG41poZyXDUNwUk8u7wQyicjx6uQae6k3B8Uon/GP0hz0li7hcYpsYGEGjyzclcmL6rT2/m6GJ6yY5uE3TSSbRME3M5uAgw+QILudbTVAxXkJwQceR261ruew4V28DC5jsaaiOxEkkZTRgn5NVcccPevX8WA1JR3Knxc/QEyA=
- DNS ASK cl###nson.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''