Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",joauztdcbqsj install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\ci5VPBHdzwcLtWGwckfWEzU+affrozFPqb+5MvZrNIj1h6lEIhp1JrgLjCatk1p8+bywaQscW71xoawYAQ==[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\J+hS6ZIZdjbBbJr3gfzmbs2wJkq1x0fjzm9E=[1]
- 'ch###off.co.be':80
- 'localhost':1035
- ch###off.co.be/msHkvukeX+uKWUyd7conlevMEfU/ci5VPBHdzwcLtWGwckfWEzU+affrozFPqb+5MvZrNIj1h6lEIhp1JrgLjCatk1p8+bywaQscW71xoawYAQ==
- ch###off.co.be/yLCIVYTkvAGVA4zcFve1Z7KZvBZugFxlGSdLfViwbD8F6x+Gj0NUd+a9sx4HQfMeNSW6Y4Ljb0njQW8zsQ4QjtoxMzLyjhmZ2CN9WTuqOyHr6PAXB6P0EkDiQSCNaWRXFdDfzJlF/vpur0fSq5MeeVhkiZX7JDOSE1ktXs/J+hS6ZIZdjbBbJr3gfzmbs2wJkq1x0fjzm9E=
- DNS ASK ch###off.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''