Техническая информация
- %WINDIR%\jnta1366.exe (загружен из сети Интернет)
- <SYSTEM32>\regsvr32.exe /s %WINDIR%\jnta4886.dll
- <SYSTEM32>\regsvr32.exe /s jnta1630.ocx
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\cadastro[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\img3[1].jpg
- %WINDIR%\jnta1366.exe
- %WINDIR%\jnta4886.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\folha[1].jpg
- <SYSTEM32>\jnta1630.ocx
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\mu_fig[1].jpg
- 'ko####nk.cwsurf.de':80
- 've#####ares.hdfree.in':80
- 'localhost':1035
- ve#####ares.hdfree.in/pictures/img3.jpg
- ve#####ares.hdfree.in/pictures/mu_fig.jpg
- ve#####ares.hdfree.in/pictures/folha.jpg
- ko####nk.cwsurf.de/cadastro.php
- DNS ASK ko####nk.cwsurf.de
- DNS ASK ve#####ares.hdfree.in