Техническая информация
- %WINDIR%\vcio4099.exe (загружен из сети Интернет)
- <SYSTEM32>\regsvr32.exe /s %WINDIR%\vcio1528.dll
- <SYSTEM32>\regsvr32.exe /s vcio5459.ocx
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\cadastro[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\img3[1].jpg
- %WINDIR%\vcio4099.exe
- %WINDIR%\vcio1528.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\galho[1].jpg
- <SYSTEM32>\vcio5459.ocx
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\cliente1[1].jpg
- 'ci####rby.cwsurf.de':80
- 'ai####011.hdfree.in':80
- 'localhost':1036
- ai####011.hdfree.in/users/img3.jpg
- ai####011.hdfree.in/users/cliente1.jpg
- ai####011.hdfree.in/users/galho.jpg
- ci####rby.cwsurf.de/cadastro.php
- DNS ASK ci####rby.cwsurf.de
- DNS ASK ai####011.hdfree.in