by Wedson
Server: dropped file: C:\WINDOWS\SYSTEM\SYSTEMTR.EXE size: 76 KB port: 2115 TCP startup: HKU\.Default\Software\Microsoft\Windows\CurrentVersion\run