Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",joauztdcbqsj install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\Fs8O1FWQJhmO6oV1UDGhW8NLLocJnoFegZvsepww==[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\emyKhxCF7NkdBUOZKXNswKG8WI9BIAZwRwRdOf4G1Js1V7Q9wN35HaeQepD9E1YNUh8T0D8E1VyVWxWtdZo8upV7U6HaILmAa1UjrmQoUIY1thkVvtIsVRtgLuKwBmvvYgYY4v0CDp3x6ytbLckPb[1]
- 'de###er.co.be':80
- 'localhost':1034
- de###er.co.be/GflaniJr5F/r8T0ecq0grEnxzy9Z0rWkdckLrIrbkpapZQ5IdtgxI0h+qXi9ecpglGWIb/Fs8O1FWQJhmO6oV1UDGhW8NLLocJnoFegZvsepww==
- de###er.co.be/eMRTzgaDylkbnN67vq9WgxtAOpTtNYOV8xSX+t/LwfgSv/emyKhxCF7NkdBUOZKXNswKG8WI9BIAZwRwRdOf4G1Js1V7Q9wN35HaeQepD9E1YNUh8T0D8E1VyVWxWtdZo8upV7U6HaILmAa1UjrmQoUIY1thkVvtIsVRtgLuKwBmvvYgYY4v0CDp3x6ytbLckPbdVnTnasc=
- DNS ASK de###er.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''