Техническая информация
- C:\winlogin.exe (загружен из сети Интернет)
- <SYSTEM32>\attrib.exe +r +s +h C:\\winlogin.exe
- %PROGRAM_FILES%\Internet Explorer\IEXPLORE.EXE http://bi#.ly/kQdVNB
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\kQdVNB[1]
- C:\winlogin.exe
- C:\winlogin.exe
- 'bi#.ly':80
- 'localhost':1036
- 'bu##ko.com':80
- bi#.ly/kQdVNB
- bu##ko.com/videoaula.avi
- DNS ASK bi#.ly
- DNS ASK bu##ko.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''