Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\Flash Player.exe
- '%TEMP%\install_flash_player_11_plugin.exe'
- '%HOMEPATH%\Start Menu\Programs\Startup\Flash Player.exe'
- '<SYSTEM32>\taskkill.exe' /f /im iexplor*
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\Sil.bat" "
- '<SYSTEM32>\ping.exe' -n 1 localhost
- '<SYSTEM32>\taskkill.exe' /f /im chr*
- '<SYSTEM32>\taskkill.exe' /f /im fire*
- '<SYSTEM32>\taskkill.exe' /f /im oper*
- chrome.exe
- opera.exe
- firefox.exe
- iexplore.exe
- %TEMP%\{98707FE6-888F-4A78-8F60-D0E18DC466FA}\fpb.tmp
- %HOMEPATH%\Desktop\Internet Explorer.lnk
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\benimsayfa[1]
- %TEMP%\Sil.bat
- %TEMP%\install_flash_player_11_plugin.exe
- %TEMP%\{73B5711F-0E57-49A9-8FAB-43E1999679D6}\fpb.tmp
- %TEMP%\{73B5711F-0E57-49A9-8FAB-43E1999679D6}\fpb.tmp
- 'www.be###sayfa.com':80
- 'localhost':1035
- www.be###sayfa.com/
- DNS ASK www.be###sayfa.com
- ClassName: 'IEFrame' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: '(null)' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: '' WindowName: '(null)'