Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'rigcerupzucr' = '%HOMEPATH%\rigcerupzucr.exe'
- %HOMEPATH%\rigcerupzucr.exe
- '4e###kids.de':443
- '0r##iko.de':443
- '7a##ble.be':443
- '4e###nails.nl':443
- '4e###yone.nl':443
- 'sm##.live.com':25
- '4e##orts.eu':443
- '4e###dreams.nl':443
- DNS ASK 4e###kids.de
- DNS ASK 0r##iko.de
- DNS ASK 7a##ble.be
- DNS ASK 4e###nails.nl
- DNS ASK 4e###yone.nl
- DNS ASK sm##.live.com
- DNS ASK 4e##orts.eu
- DNS ASK 4e###dreams.nl
- ClassName: 'Indicator' WindowName: ''