Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'internet explorer' = '"%TEMP%\explorer.exe"'
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\dados[1]
- %TEMP%\explorer.exe
- 'gr######rtual.hd1.com.br':80
- gr######rtual.hd1.com.br/dados/
- DNS ASK gr######rtual.hd1.com.br