ELISTARA:
Saludos
maura63
[quote="sandbox"]
Report created: 25.05.2005 05:04:57
Automatic Sandbox analysis of unknown malware (NO_VIRUS)
[ General information ]
* Creating several executable files on hard-drive.
* File length: 36864 bytes.
[ Changes to filesystem ]
* Creates file C:\WINDOWS\SYSTEM\winnook.exe.
* Creates file C:\WINDOWS\desktop.html.
[ Changes to registry ]
* Creates key "HKLM\Software\AntivirusGold".
* Creates value "Intel system tool"="C:\WINDOWS\SYSTEM\winnook.exe" in key "HKCU\Software\Microsoft\Windows\CurrentVersion\Run".
[ Process/window information ]
* Will automatically restart after boot (I'll be back...).
* Attempts to open CLSID {75048700-EF1F-11D0-9888-006097DEACF9}.[/quote]