Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Microsoft' = '%APPDATA%\Microsoft\svchost.exe'
- '%APPDATA%\Microsoft\svchost.exe'
- %TEMP%\melt.txt
- %APPDATA%\Microsoft\svchost.exe
- DNS ASK www.fa###ook.com
- DNS ASK www.Google.com
- DNS ASK www.yo##ube.com
- ClassName: '' WindowName: ''
- ClassName: '' WindowName: 'oooooooooo\\'