Technical Information
- %WINDIR%\Explorer.EXE
- %TEMP%\~!#3F.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[16].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[16].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[17].php
- %TEMP%\~!#40.tmp
- %TEMP%\~!#3E.tmp
- %TEMP%\~!#3C.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[15].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[16].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[16].php
- %TEMP%\~!#3D.tmp
- %TEMP%\~!#41.tmp
- %TEMP%\~!#45.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[18].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[18].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[18].php
- %TEMP%\~!#46.tmp
- %TEMP%\~!#44.tmp
- %TEMP%\~!#42.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[17].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[17].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[17].php
- %TEMP%\~!#43.tmp
- %TEMP%\~!#3B.tmp
- %TEMP%\~!#33.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[13].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[13].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[14].php
- %TEMP%\~!#34.tmp
- %TEMP%\~!#32.tmp
- %TEMP%\~!#30.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[12].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[13].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[13].php
- %TEMP%\~!#31.tmp
- %TEMP%\~!#35.tmp
- %TEMP%\~!#39.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[15].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[15].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[15].php
- %TEMP%\~!#3A.tmp
- %TEMP%\~!#38.tmp
- %TEMP%\~!#36.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[14].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[14].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[14].php
- %TEMP%\~!#37.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[22].php
- %TEMP%\~!#56.tmp
- %TEMP%\~!#57.tmp
- %TEMP%\~!#58.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[22].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[22].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[21].php
- %TEMP%\~!#53.tmp
- %TEMP%\~!#54.tmp
- %TEMP%\~!#55.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[22].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[23].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[24].php
- %TEMP%\~!#5C.tmp
- %TEMP%\~!#5D.tmp
- %TEMP%\~!#5E.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[24].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[23].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[23].php
- %TEMP%\~!#59.tmp
- %TEMP%\~!#5A.tmp
- %TEMP%\~!#5B.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[23].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[21].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[19].php
- %TEMP%\~!#4A.tmp
- %TEMP%\~!#4B.tmp
- %TEMP%\~!#4C.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[19].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[19].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[18].php
- %TEMP%\~!#47.tmp
- %TEMP%\~!#48.tmp
- %TEMP%\~!#49.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[19].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[20].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[21].php
- %TEMP%\~!#50.tmp
- %TEMP%\~!#51.tmp
- %TEMP%\~!#52.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[21].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[20].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[20].php
- %TEMP%\~!#4D.tmp
- %TEMP%\~!#4E.tmp
- %TEMP%\~!#4F.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[20].php
- %TEMP%\~!#10.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[4].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[5].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[5].php
- %TEMP%\~!#11.tmp
- %TEMP%\~!#F.tmp
- %TEMP%\~!#D.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[4].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[4].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[4].php
- %TEMP%\~!#E.tmp
- %TEMP%\~!#12.tmp
- %TEMP%\~!#16.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[6].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[6].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[6].php
- %TEMP%\~!#17.tmp
- %TEMP%\~!#15.tmp
- %TEMP%\~!#13.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[5].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[5].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[6].php
- %TEMP%\~!#14.tmp
- %TEMP%\~!#C.tmp
- %TEMP%\~!#4.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[1].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[2].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[2].php
- %TEMP%\~!#5.tmp
- %TEMP%\~!#3.tmp
- %TEMP%\~!#1.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[1].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[1].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[1].php
- %TEMP%\~!#2.tmp
- %TEMP%\~!#6.tmp
- %TEMP%\~!#A.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[3].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[3].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[3].php
- %TEMP%\~!#B.tmp
- %TEMP%\~!#9.tmp
- %TEMP%\~!#7.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[2].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[2].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[3].php
- %TEMP%\~!#8.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[10].php
- %TEMP%\~!#27.tmp
- %TEMP%\~!#28.tmp
- %TEMP%\~!#29.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[11].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[10].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[10].php
- %TEMP%\~!#24.tmp
- %TEMP%\~!#25.tmp
- %TEMP%\~!#26.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[10].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[11].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[12].php
- %TEMP%\~!#2D.tmp
- %TEMP%\~!#2E.tmp
- %TEMP%\~!#2F.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[12].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[12].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[11].php
- %TEMP%\~!#2A.tmp
- %TEMP%\~!#2B.tmp
- %TEMP%\~!#2C.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[11].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[9].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[7].php
- %TEMP%\~!#1B.tmp
- %TEMP%\~!#1C.tmp
- %TEMP%\~!#1D.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[8].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[7].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[7].php
- %TEMP%\~!#18.tmp
- %TEMP%\~!#19.tmp
- %TEMP%\~!#1A.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[7].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[8].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\0D6B6PI5\load[9].php
- %TEMP%\~!#21.tmp
- %TEMP%\~!#22.tmp
- %TEMP%\~!#23.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[9].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\69I9OPW5\load[9].php
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\ULU3YH2D\load[8].php
- %TEMP%\~!#1E.tmp
- %TEMP%\~!#1F.tmp
- %TEMP%\~!#20.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\SL6TKFAX\load[8].php
- 'lo######st.crazysearch.biz':80
- lo######st.crazysearch.biz/load.php?c=##############
- lo######st.crazysearch.biz/load.php?c=#############
- DNS ASK lo######st.crazysearch.biz
- '<Private IP address>':1035