Техническая информация
- '%PROGRAM_FILES%\LookSafe Utility\resetDns.exe' -p 208.69.150.250 -a "208.69.150.252" -b LookSafe Utility -url http://www.lo###afe.com
- '%TEMP%\nsi3.tmp\ns4.tmp' "%PROGRAM_FILES%\LookSafe Utility\resetdns.exe" -p 208.69.150.250 -a "208.69.150.252" -b LookSafe Utility -url http://www.lo###afe.com
- iexplore.exe
- firefox.exe
- chrome.exe
- %TEMP%\nsi3.tmp\nsExec.dll
- %TEMP%\nsi3.tmp\ns4.tmp
- %PROGRAM_FILES%\LookSafe Utility\resetDns.exe
- %TEMP%\nsy2.tmp
- %TEMP%\nsi3.tmp\System.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\thankyou[1].asp
- %TEMP%\nsi3.tmp\ns4.tmp
- 'lo###afe.com':80
- 'localhost':1037
- lo###afe.com/thankyou.asp?pr#################################################
- DNS ASK lo###afe.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MozillaWindowClass' WindowName: ''
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'Chrome_WidgetWin_1' WindowName: ''
- ClassName: 'Chrome_WidgetWin_0' WindowName: ''