Техническая информация
- '<SYSTEM32>\svchost.exe' connect
- <SYSTEM32>\svchost.exe
- %TEMP%\11062013maxo_1.cfg
- 'www.pa#####2014.xpg.com.br':80
- 'bi#.ly':80
- 'www.be#####014.xpg.com.br':80
- 'www.oi#####2014.xpg.com.br':80
- www.pa#####2014.xpg.com.br/palavra_new.txt
- www.oi#####2014.xpg.com.br/oitenta_new.txt
- www.be#####014.xpg.com.br/bexiga_new.txt
- bi#.ly/14IrgWK?
- DNS ASK www.pa#####2014.xpg.com.br
- DNS ASK bi#.ly
- DNS ASK www.be#####014.xpg.com.br
- DNS ASK www.oi#####2014.xpg.com.br
- ClassName: '(null)' WindowName: 'svchost.exe'