Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Internet Explorer\Extensions\{D884BAEF-17B8-4a46-B1C9-073DE374A1DA}] 'Exec' = '%PROGRAM_FILES%\siteon\siteonOption.exe'
- <SYSTEM32>\cmd.exe /c \DelSelf.bat
- <SYSTEM32>\regsvr32.exe /s "%PROGRAM_FILES%\siteon\siteon.dll"
- %PROGRAM_FILES%\siteon\siteonStrt.exe
- %PROGRAM_FILES%\siteon\siteonOption.exe
- %PROGRAM_FILES%\siteon\siteon.dll
- C:\DelSelf.bat
- %PROGRAM_FILES%\siteon\UnInstall.exe
- %PROGRAM_FILES%\siteon\siteonUpdate.exe
- %TEMP%\UnInstall.exe
- %TEMP%\siteon.dll
- %TEMP%\00047EE6
- %TEMP%\00032D6A
- %TEMP%\siteonUpdate.exe
- %TEMP%\siteonStrt.exe
- %TEMP%\siteonOption.exe
- %TEMP%\siteonStrt.exe
- %TEMP%\siteonUpdate.exe
- %TEMP%\UnInstall.exe
- %TEMP%\siteonOption.exe
- %TEMP%\00032D6A
- %TEMP%\00047EE6
- %TEMP%\siteon.dll
- 'br.##te-on.com':80
- br.##te-on.com/pgadmin/count/count.php?pt######################
- DNS ASK br.##te-on.com
- ClassName: 'Shell_TrayWnd' WindowName: ''