Technical Information
- Handler for all processes: <Current directory>\cfgdll.dll
- %APPDATA%\qmacro\qdisp.dll
- <Current directory>\cfgdll.dll
- %TEMP%\ad-mymacro8.xml
- %TEMP%\adcon\mm\tmpad.xml
- %TEMP%\adcon\mm\liveupdate8.dat.tmp
- %TEMP%\85e3.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\liveupdate8[1].dat
- %TEMP%\mymacro.zip
- %TEMP%\plugin.zip
- <Current directory>\plugin\WINDOW.DLL
- %TEMP%\1.tmp
- %TEMP%\2.tmp
- <Current directory>\plugin\FILE.DLL
- <Current directory>\plugin\MSG.DLL
- <Current directory>\plugin\SYS.DLL
- <Current directory>\plugin\GETSYSINFO.DLL
- %TEMP%\adcon\mm\tmpad.xml
- %TEMP%\mymacro.zip
- %TEMP%\plugin.zip
- from %TEMP%\adcon\mm\liveupdate8.dat.tmp to %TEMP%\adcon\mm\liveupdate8.dat
- 'do##.#rbrothers.com':80
- 'localhost':1036
- do##.#rbrothers.com/qmacro/up_mymacro/liveupdate8.dat
- DNS ASK hi.###rothers.com
- DNS ASK ad.###rothers.com
- DNS ASK do##.#rbrothers.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''