Техническая информация
- %WINDIR%\iternet.exe
- %WINDIR%\Soud.exe
- %WINDIR%\Aple.exe
- %WINDIR%\Java.exe
- %WINDIR%\iternet.exe (загружен из сети Интернет)
- %WINDIR%\Soud.exe (загружен из сети Интернет)
- %WINDIR%\Java.exe (загружен из сети Интернет)
- %WINDIR%\Aple.exe (загружен из сети Интернет)
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\Ares[1].exe
- %WINDIR%\iternet.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\YPORKZYZ\iternet[1].exe
- %WINDIR%\HOWEIRUOSFW.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\HOWEIRUOSFW[1].exe
- %WINDIR%\Ares.exe
- %WINDIR%\Soud.exe
- %WINDIR%\Java.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\Java[1].exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\Soud[1].exe
- %WINDIR%\Aple.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\Aple[1].exe
- 'fo####ertao.com.br':80
- 'localhost':1037
- 'www.go###e.com.br':80
- fo####ertao.com.br/2011/12/rules/4545/novi/templantes/iternet.exe
- fo####ertao.com.br/2011/12/rules/4545/novi/templantes/Ares.exe
- fo####ertao.com.br/2011/12/rules/4545/novi/templantes/HOWEIRUOSFW.exe
- fo####ertao.com.br/2011/12/rules/4545/novi/templantes/Soud.exe
- www.go###e.com.br/
- fo####ertao.com.br/2011/12/rules/4545/novi/templantes/Java.exe
- fo####ertao.com.br/2011/12/rules/4545/novi/templantes/Aple.exe
- DNS ASK fo####ertao.com.br
- DNS ASK www.go###e.com.br
- '<IP-адрес в локальной сети>':1035