Техническая информация
- %WINDIR%\msagent\bibinhos.exe
- %WINDIR%\msagent\sendtos.exe
- %WINDIR%\msagent\gbplugins.exe
- %WINDIR%\msagent\msnwabs.exe
- %WINDIR%\msagent\bibinhos.exe (загружен из сети Интернет)
- %WINDIR%\msagent\sendtos.exe (загружен из сети Интернет)
- %WINDIR%\msagent\msnwabs.exe (загружен из сети Интернет)
- %WINDIR%\msagent\gbplugins.exe (загружен из сети Интернет)
- <SYSTEM32>\regsvr32.exe /s %WINDIR%\Windows32.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\YPORKZYZ\petro[1].gif
- %WINDIR%\msagent\gbplugins.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\semfomegb[1].gif
- %WINDIR%\msagent\bibinhos.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\bibi[1].gif
- %WINDIR%\msagent\sendtos.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\Carnaval2010[1].gif
- <SYSTEM32>\wbem\Performance\WmiApRpl_new.ini
- %WINDIR%\msagent\msnwabs.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\semfomemsn[1].gif
- %WINDIR%\Windows32.dll
- 'www.em##.asso.fr':80
- 'localhost':1035
- www.em##.asso.fr/images/info/petro.gif
- www.em##.asso.fr/images/info/bibi.gif
- www.em##.asso.fr/images/info/semfomegb.gif
- www.em##.asso.fr/images/info/Carnaval2010.gif
- www.em##.asso.fr/images/info/semfomemsn.gif
- DNS ASK www.em##.asso.fr