Техническая информация
- <SYSTEM32>\regsvr32.exe /s <SYSTEM32>\2078.dll
- <SYSTEM32>\cscript.exe <SYSTEM32>\2078.vbs http://ta####oolbar.com/avm.cgi?
- <SYSTEM32>\mshta.exe http://www.gr###eshark.com/
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\grooveshark[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\avm[1]
- <SYSTEM32>\2078.dll
- %ALLUSERSPROFILE%\Desktop\Streaming Music - MediaPass.lnk
- <SYSTEM32>\2078.vbs
- 'localhost':1039
- 'ta####oolbar.com':80
- 'localhost':1037
- 'www.gr###eshark.com':80
- ta####oolbar.com/avm.cgi?co###################################################
- www.gr###eshark.com/
- DNS ASK ta####oolbar.com
- DNS ASK www.gr###eshark.com
- ClassName: 'Shell_TrayWnd' WindowName: ''