Техническая информация
- [<HKLM>\SOFTWARE\Classes\vtxfile\Shell\open\command] '' = '%ProgramFiles%\Internet Explorer\minftnet.exe %1'
- '<SYSTEM32>\cmd.exe' /c start /MAX iexplore http://www.in###meteo.fr/consultation
- '%ProgramFiles%\Internet Explorer\IEXPLORE.EXE' http://www.in###meteo.fr/consultation
- '%TEMP%\RarSFX0\Instal.exe'
- '<SYSTEM32>\cmd.exe' /c %TEMP%\installation.exe
- '%TEMP%\installation.exe'
- %HOMEPATH%\Desktop\Meteo.lnk
- %APPDATA%\Icone\icones_meteo.ico
- %HOMEPATH%\Local Settings\<INETFILES>\Content.IE5\KHMHGZ4F\consultation[1]
- %APPDATA%\Microsoft\Internet Explorer\Quick Launch\Meteo.lnk
- %HOMEPATH%\Start Menu\Programs\Meteo.lnk
- %HOMEPATH%\Start Menu\Meteo.lnk
- %TEMP%\RarSFX0\minftnet.exe
- %TEMP%\RarSFX0\Instal.exe
- %TEMP%\installation.exe
- %ProgramFiles%\Internet Explorer\minftnet.ini
- %ProgramFiles%\Internet Explorer\minftnet.exe
- %TEMP%\RarSFX0\minftnet.ini
- %TEMP%\RarSFX0\minftnet.ini
- %TEMP%\RarSFX0\minftnet.exe
- %TEMP%\RarSFX0\Instal.exe
- 'www.in###meteo.fr':80
- 'localhost':1036
- http://www.in###meteo.fr/consultation
- DNS ASK www.in###meteo.fr
- ClassName: '' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'CFenetre' WindowName: 'Fen\u043atre provisoire qu\on ne devrait pas voir !'
- ClassName: 'EDIT' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'CFenetre' WindowName: 'Fen?tre provisoire qu'