Техническая информация
- %TEMP%\260213_d.exe
- %TEMP%\260213_dply.exe
- %HOMEPATH%\Desktop\Baixar com Velocidade Premium.url
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\130213c2[1].htm
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\130213i[1].htm
- <SYSTEM32>\wbem\Performance\WmiApRpl_new.ini
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\130213c[1].htm
- %TEMP%\260213_f.exe
- 'wp#d':80
- 'zo###ags.net':80
- 'localhost':1036
- 'te##ish.net':80
- zo###ags.net/130213d/260213_d.exe
- te##ish.net/130213s/130213c.htm
- te##ish.net/130213s/130213c2.htm
- zo###ags.net/130213d/conta.txt
- wp#d/wpad.dat
- te##ish.net/130213s/130213i.htm
- zo###ags.net/130213d/260213_dply.exe
- zo###ags.net/130213d/260213_f.exe
- DNS ASK zo###ags.net
- DNS ASK wp#d
- DNS ASK te##ish.net
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''