Техническая информация
- C:\Recoverys\Mensseger.exe
- C:\Recoverys\Windows.exe -start
- C:\Recoverys\Mensseger.exe (загружен из сети Интернет)
- C:\Recoverys\Windows.exe (загружен из сети Интернет)
- C:\Recoverys\Windows.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\2VAZY7AN\bStp[1]
- C:\Recoverys\Mensseger.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\index[1].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\aqgm[1]
- %TEMP%\~DF210B.tmp
- 'xp.gd':80
- '2.#y':80
- 'www.ac###.com.br':80
- 'localhost':1036
- 'localhost':1038
- 2.#y/bStp
- xp.gd/aqgm
- www.ac###.com.br/index.php?op##################################################
- DNS ASK 2.#y
- DNS ASK xp.gd
- DNS ASK www.ac###.com.br
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''