Техническая информация
- '%TEMP%\dlph.exe'
- '%TEMP%\dlph.exe' (загружен из сети Интернет)
- %TEMP%\dlph.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\130213c2[1].htm
- %HOMEPATH%\Desktop\Baixe-com-Velocidade-Premium.url
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\130213c[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\130213i[1].htm
- %TEMP%\funds.exe
- %TEMP%\dply.exe
- 'wp#d':80
- 'www.pe##god.com':80
- 'localhost':1036
- 'www.or####creator.com':80
- www.or####creator.com/130213s/130213c.htm
- www.pe##god.com/130213d/dlph.exe
- www.or####creator.com/130213s/130213c2.htm
- www.pe##god.com/130213d/Baixe-com-Velocidade-Premium.url
- wp#d/wpad.dat
- www.or####creator.com/130213s/130213i.htm
- www.pe##god.com/130213d/dply.exe
- www.pe##god.com/130213d/funds.exe
- DNS ASK www.pe##god.com
- DNS ASK wp#d
- DNS ASK www.or####creator.com
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'