Техническая информация
- <SYSTEM32>\deleta.exe (загружен из сети Интернет)
- <SYSTEM32>\DSC050723.JPG.exe (загружен из сети Интернет)
- <SYSTEM32>\DSC05072.JPG.exe (загружен из сети Интернет)
- <SYSTEM32>\DSC050723.JPG.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\visualizar_JPG[1].EXe
- <SYSTEM32>\deleta.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\DSC05072.JPG[1].exe
- <SYSTEM32>\DSC05072.JPG.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\DSC050723.JPG[1].exe
- 'ph#######ucationalsolutions.com':80
- 'www.ci######camboriu.sc.gov.br':80
- 'www.ga#####viagens.com.br':80
- ph#######ucationalsolutions.com/plugins/visualizar_JPG.EXe
- www.ci######camboriu.sc.gov.br/educacao/ceis/cei_caic/imagens/DSC050723.JPG.exe
- www.ga#####viagens.com.br//components/com_mailto/views/mailto/DSC05072.JPG.exe
- DNS ASK ph#######ucationalsolutions.com
- DNS ASK www.ci######camboriu.sc.gov.br
- DNS ASK www.ga#####viagens.com.br
- ClassName: 'MS_WINHELP' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''