Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'svchost32' = '%WINDIR%\svchost32.exe'
- <SYSTEM32>\cmd.exe
- %WINDIR%\svchost32.exe
- 'localhost':1037
- 'bc.vc':80
- 'sm##.gmail.com':587
- http://bc.vc/vuQNyAM
- DNS ASK bc.vc
- DNS ASK sm##.gmail.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''