Technical Information
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' http://www.ts###ut-mag.com/wp-content/n_02.php?MC######### / 2:40:07 PM
- %HOMEPATH%\Jar.vbe
- %HOMEPATH%\Local Settings\<INETFILES>\Content.IE5\KHMHGZ4F\LerdT[1]
- %HOMEPATH%\Daime.tmp
- %WINDIR%\Givetool.dll
- %HOMEPATH%\Jar.vbe
- %HOMEPATH%\Daime.tmp
- 'localhost':1037
- 'ho##.#ntubo.com.br':80
- 'localhost':1040
- 'ts###ut-mag.com':80
- http://ho##.#ntubo.com.br/LerdT
- http://www.ts###ut-mag.com/wp-content/n_02.php?MC############################ via ts###ut-mag.com
- DNS ASK ho##.#ntubo.com.br
- DNS ASK www.ts###ut-mag.com
- ClassName: '' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_WINHELP' WindowName: ''
- '<SYSTEM32>\wscript.exe' /B "%HOMEPATH%\Jar.vbe"
- '<SYSTEM32>\regsvr32.exe' /s "%WINDIR%\Givetool.dll"