Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",joauztdcbqsj install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\iQKQLnQNH0=[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\Yg5r[1]
- 'mc###to.co.be':80
- 'localhost':1035
- mc###to.co.be/pzYVoVYM3lQB0NYv5+DEPKQWCO3O6WkWb9mn8hUHr4+54OR3N1XQcMQ+oArsS4QFTGNmEZzQWFCDNWBnBe6GQqLBPnUVKeqi/iQKQLnQNH0=
- mc###to.co.be/tDHHafvV0vZHLLCajOqYGp/xDvT5rE/iP39zoPQ5mKmMOL5EfDkJIoJttsGRbyzQPq/4POkVdUU01Li4NNGaqGQntsFyXEy2PK4DYJtEhu9YzKWDsadUjv706vJDPyGfpMi49vgXB5uawo8R8jM7Ot78sAJSobtJgZd4Q/kf8LAZbZd3YFatT2DN40JDA4+K6yy/Yg5r
- DNS ASK mc###to.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''