Техническая информация
- '<SYSTEM32>\cmd.exe' /c c:\newblogger.bat
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' -Embedding
- C:\newblogger.bat
- 'localhost':1042
- '74.##5.232.51':443
- 'ca####abreak.com':80
- 'localhost':1038
- '74.##5.232.51':80
- http://ca####abreak.com/blogger/newblogger.php?a=############
- http://ne##.google.com/news?ne############### via 74.##5.232.51
- DNS ASK www.google.com
- DNS ASK ca####abreak.com
- DNS ASK ne##.google.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''