Техническая информация
- <SYSTEM32>\Isass.scr
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\imgis[1].swf
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\imgis[1].swf
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\YPORKZYZ\imgis[1].swf
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\imgis[1].swf
- <SYSTEM32>\msbcs.scr
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\imgtd[1].swf
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\imgtd[1].swf
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\YPORKZYZ\imgtd[1].swf
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\imgtd[1].swf
- <Полный путь к вирусу>
- <SYSTEM32>\Isass.scr
- <SYSTEM32>\msbcs.scr
- 'br.###cities.com':80
- 'www.go###e.com.br':80
- br.###cities.com/bostinha_01/imgis.swf
- br.###cities.com/bostinha29/imgis.swf
- br.###cities.com/bostinha_11/imgis.swf
- br.###cities.com/bostinha_10/imgis.swf
- br.###cities.com/bostinha_12/imgtd.swf
- br.###cities.com/bostinha26/imgtd.swf
- www.go###e.com.br/
- br.###cities.com/bostinha28/imgtd.swf
- br.###cities.com/bostinha27/imgtd.swf
- DNS ASK br.###cities.com
- DNS ASK www.go###e.com.br
- ClassName: '' WindowName: 'cmrss.exe'