Technical Information
- <SYSTEM32>\mdlmp3.exe (downloaded from the Internet)
- <SYSTEM32>\mdlmp3.scr (downloaded from the Internet) /S
- <SYSTEM32>\mdliesound.exe (downloaded from the Internet)
- <SYSTEM32>\mdlplite1.exe (downloaded from the Internet)
- <SYSTEM32>\mdliepl.exe (downloaded from the Internet)
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\arquivo4[1].jpg
- <SYSTEM32>\mdliesound.exe
- <SYSTEM32>\mdlmp3.exe
- <SYSTEM32>\mdlmp3.scr
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\arquivo5[1].jpg
- <SYSTEM32>\mdlplite1.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\arquivo1[1].jpg
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\arquivo2[1].jpg
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\arquivo3[1].jpg
- <SYSTEM32>\mdliepl.exe
- 'www.ta####ra.freela.biz':80
- www.ta####ra.freela.biz/dados/arquivo4.jpg
- www.ta####ra.freela.biz/dados/arquivo5.jpg
- www.ta####ra.freela.biz/dados/arquivo3.jpg
- www.ta####ra.freela.biz/dados/arquivo1.jpg
- www.ta####ra.freela.biz/dados/arquivo2.jpg
- DNS ASK www.ta####ra.freela.biz
- ClassName: 'Shell_TrayWnd' WindowName: ''