Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Internet Explorer\Extensions\{14C36B8A-E968-4ad0-ADB3-8CE01810A3E8}] 'Exec' = '%PROGRAM_FILES%\siteonbar\siteonbarOption.exe'
- <SYSTEM32>\cmd.exe /c \DelSelf.bat
- <SYSTEM32>\regsvr32.exe /s "%PROGRAM_FILES%\siteonbar\siteonbar.dll"
- %PROGRAM_FILES%\siteonbar\siteonbarStrt.exe
- %PROGRAM_FILES%\siteonbar\siteonbarOption.exe
- %PROGRAM_FILES%\siteonbar\siteonbar.dll
- C:\DelSelf.bat
- %PROGRAM_FILES%\siteonbar\UnInstall.exe
- %PROGRAM_FILES%\siteonbar\siteonbarUpdate.exe
- %TEMP%\UnInstall.exe
- %TEMP%\siteonbar.dll
- %TEMP%\000321EC
- %TEMP%\000236C5
- %TEMP%\siteonbarUpdate.exe
- %TEMP%\siteonbarStrt.exe
- %TEMP%\siteonbarOption.exe
- %TEMP%\siteonbarStrt.exe
- %TEMP%\siteonbarUpdate.exe
- %TEMP%\UnInstall.exe
- %TEMP%\siteonbarOption.exe
- %TEMP%\000236C5
- %TEMP%\000321EC
- %TEMP%\siteonbar.dll
- 'br.##te-on.com':80
- br.##te-on.com/pgadmin/count/count.php?pt######################
- DNS ASK br.##te-on.com
- ClassName: 'Shell_TrayWnd' WindowName: ''