Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] '6dc257a6e6a67ee307fa26924fd8e6fa' = '"%TEMP%\init32.exe" ..'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '6dc257a6e6a67ee307fa26924fd8e6fa' = '"%TEMP%\init32.exe" ..'
- %HOMEPATH%\Start Menu\Programs\Startup\6dc257a6e6a67ee307fa26924fd8e6fa.exe
- '%TEMP%\init32.exe'
- %TEMP%\init32.exe
- 'mi#######-supporter.hopto.org':78
- DNS ASK mi#######-supporter.hopto.org