Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '<File name>' = '<Full path to file>'
- 'sm###.#loudnetwork.kz':80
- http://sm###.#loudnetwork.kz/t
- DNS ASK sm###.#loudnetwork.kz
- ClassName: '' WindowName: '160000/2848'
- ClassName: '' WindowName: 'Click'
- ClassName: '' WindowName: 'GINA Logon'
- '<SYSTEM32>\rundll32.exe' shell32.dll,Activate_RunDLL