Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Microsoft Windows Updater' = 'C:\Microsoft Windows Update\Microsoft Windows Updater.exe'
- C:\Microsoft Windows Update\Microsoft Windows Updater.exe
- C:\Microsoft Windows Update\win_TT2011-11-14_extra.h
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\fin[1].txt
- C:\Microsoft Windows Update\kokochanel7194.ini
- %TEMP%\aut1.tmp
- C:\Microsoft Windows Update\Microsoft Windows Updater.exe
- %TEMP%\aut1.tmp
- 'ft####so.free.fr':21
- 'go#####dkamas.free.fr':80
- go#####dkamas.free.fr/fin.txt
- DNS ASK ft####so.free.fr
- DNS ASK go#####dkamas.free.fr
- '<Private IP address>':1037
- ClassName: 'Indicator' WindowName: ''