Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",ikoprwxrebpqju install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\TVWYGFbbAduuUpwsFj5o9rJKl9BPGfMP8Wd1cpGalqJXPItmE+EUc4IbjffSliS3CTqa9pF57aEH9zdZMeSt4Q==[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\gukA=[1]
- 'ro###qoes.co.be':80
- 'localhost':1036
- ro###qoes.co.be/VZQaKvrLuIX3exQ8v+l4wg0/TVWYGFbbAduuUpwsFj5o9rJKl9BPGfMP8Wd1cpGalqJXPItmE+EUc4IbjffSliS3CTqa9pF57aEH9zdZMeSt4Q==
- ro###qoes.co.be/VqHmQdMXRf52cUCo43YJdgt1AKIIAWT+i5XeBdycUydfArJYDvEEj9ReELLqF2R1F/u3gHKuQgwlfzFe1bEDE0i7+miSeZhOAZqrIkArQfKB91/76ML/utG12CB6pcpmm7lkVs7TDu3/FkYc0vZE2oNkb7UaWI+J1WTBWHQ40zbNQfHGlAgi0sg5z1qxX02akT5izM/gukA=
- DNS ASK ro###qoes.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''