Техническая информация
- '<SYSTEM32>\regsvr32.exe' /s %WINDIR%\gaa9229.dll
- %WINDIR%\gaa9229.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\watch[1]
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\paisagem_sombra[1].jpg
- <SYSTEM32>\h149920g2266604.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\membros[1].php
- 'cr########dos.web39.f1.k8.com.br':80
- 'www.yo##ube.com':80
- 'localhost':1039
- 'localhost':1036
- 'so#####ount2010.99k.org':80
- www.yo##ube.com/watch?v=###########
- cr########dos.web39.f1.k8.com.br/paisagem_sombra.jpg
- so#####ount2010.99k.org/membros.php
- DNS ASK www.yo##ube.com
- DNS ASK cr########dos.web39.f1.k8.com.br
- DNS ASK so#####ount2010.99k.org
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'IEFrame' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: '' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'