Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",joauztdcbqsj install
- %TEMP%\ins1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\I5RRDe4BJOWostSLWAngHL5+zMIepRyEgeoFbXMREE47tMnTXS1u9+GVv5RkvoKnbgmn9usct3KtNEs9Rvg==[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\z1O3+O6BhKTanwoNkfHDIx0g0PJcu3GTFq4MY=[1]
- 'do###e.co.be':80
- 'localhost':1036
- do###e.co.be/GZVnpHFITBYobqowr8RSs7ZOOt/I5RRDe4BJOWostSLWAngHL5+zMIepRyEgeoFbXMREE47tMnTXS1u9+GVv5RkvoKnbgmn9usct3KtNEs9Rvg==
- do###e.co.be/IBEzaoaAAzxViL7cS+NsSmKYV/Z7D4lT2AEEWdcPPtRa9LmQdnWM0DuR6iNVQ3hhHK9pcvyYcz0Jm3R52kciKtYbr2lyP046skKmoIV0NzxX1HUWZ2Sdx9RX34onHjPvjd7OUtuDYYDZ/83hR3hMWSotDXfshiyNmT1JL/z1O3+O6BhKTanwoNkfHDIx0g0PJcu3GTFq4MY=
- DNS ASK do###e.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''