Техническая информация
- <SYSTEM32>\kiler.exe (загружен из сети Интернет)
- <SYSTEM32>\procesblust.exe (загружен из сети Интернет)
- <SYSTEM32>\internets.exe (загружен из сети Интернет)
- <SYSTEM32>\empressa.bat (загружен из сети Интернет)
- %WINDIR%\explorer.exe http://vo####ds.ig.com.br/imgcartao/cartoes/13/c13_amor_inabalavel.swf
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\c13_amor_inabalavel[1].swf
- <SYSTEM32>\kiler.exe
- <SYSTEM32>\procesblust.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\flash[1].jpg
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\msn[1].jpg
- <SYSTEM32>\internets.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\fenix[1].jpg
- <SYSTEM32>\empressa.bat
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\avg[1].jpg
- 'localhost':1038
- 'vo####ds.ig.com.br':80
- 'localhost':1035
- 'www.ep#####ovitorias.com.br':80
- www.ep#####ovitorias.com.br/site/msn.jpg
- www.ep#####ovitorias.com.br/site/flash.jpg
- vo####ds.ig.com.br/imgcartao/cartoes/13/c13_amor_inabalavel.swf
- www.ep#####ovitorias.com.br/site/fenix.jpg
- www.ep#####ovitorias.com.br/site/avg.jpg
- DNS ASK vo####ds.ig.com.br
- DNS ASK www.ep#####ovitorias.com.br
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''