Technical Information
- <SYSTEM32>\win2011.exe (downloaded from the Internet)
- <SYSTEM32>\win2011.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\moduloa[1].jpg
- <Full path to virus>
- 'os#####eticos.com.br':80
- 'localhost':1035
- os#####eticos.com.br/cache/feeeds/moduloa.jpg
- DNS ASK os#####eticos.com.br