Technical Information
- <SYSTEM32>\rundll32.exe "%TEMP%\ins1.tmp",vfajljqyjdqxti install
- %TEMP%\ins1.tmp
- 'so###o.co.be':80
- so###o.co.be/BaxZXPtfAsBdVPBixwuLEdzpOOnXqGEac0RK47p9HFwD4r2rsbZkaUdZtd3GuYfkl101Jj/6vwe04puTzeuskSsVWL+el5U30gfrSqxD3P9UUA==
- so###o.co.be/DxzHKSeSBQZxIttluWOtKEoEC+iUY51+CODQU7M2fOz5yBKwoFx+D/G05CB/DB7oZhBAFtCVUp9+ODuaX+zS2ngG4mpjf6TODanrjEOzVKXVSj5Kh6RAvmoxeW0Izs+7b7SOhW9rkhpYocQXQyXPZ6kWHI3tu6SgKjhrYnht3rna+9+PIz/e92neprJY2RuDxG0dHj3rYoU=
- DNS ASK so###o.co.be
- ClassName: 'Shell_TrayWnd' WindowName: ''