Technical Information
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'iexplorer.exe' = '%WINDIR%\iexporer.exe'
- %WINDIR%\iexporer.exe
- 'ka####o.no-ip.info':5002
- 'pa######rtinez.no-ip.org':5001
- DNS ASK ka####o.no-ip.info
- DNS ASK pa######rtinez.no-ip.org