Technical Information
- '%ProgramFiles(x86)%\internet explorer\iexplore.exe' http://www.le##nde.fr/
- %TEMP%\6a4.tmp
- http://www.le##nde.fr/
- DNS ASK le##nde.fr
- ClassName: '' WindowName: 'EoEngine'
- ClassName: 'TformTeaTimer' WindowName: ''
- ClassName: 'Progman' WindowName: ''
- ClassName: 'Static' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''
- '%WINDIR%\syswow64\rundll32.exe' "%TEMP%\6A4.tmp",_StartProcess "%ProgramFiles(x86)%\Internet Explorer\IEXPLORE.EXE" "http://www.le##nde.fr/"
- '<SYSTEM32>\rundll32.exe' "%TEMP%\6A4.tmp",_StartProcess "%ProgramFiles(x86)%\Internet Explorer\IEXPLORE.EXE" "http://www.le##nde.fr/"