Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",joauztdcbqsj install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\jexXlYablcpOKw==[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\9PrSpkiMquxdQgTXt7k2XTQwVY=[1]
- 'es###oden.co.be':80
- 'localhost':1037
- es###oden.co.be/dLygUsOrtEkm8uJ4UQ7KAQqqmCio04R/6ZJmZ4Jeo0auTHdfUHnK1b2ROZk1tmzzP8nXuCBuWbRzHmWNJNfKa24AMbRS2cF/jexXlYablcpOKw==
- es###oden.co.be/hGmrzKZYCMukj6VM321De7YFamnrD+HZdYcWwi1HAYjSNuQrUOZ57S+xNOSCpWTq7R0JeNWsokN8ITyJdIvzmVELzmI+faY8cpk9qCWgLVdOmuOVDZlYOqM8vMD3CxWNoMEcxRHXdpH7vB5DjBj3m+XGwHM6pCMvxYkObqUPnJtmhKAu/9PrSpkiMquxdQgTXt7k2XTQwVY=
- DNS ASK es###oden.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''