Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '' = '%APPDATA%\iexplore.exe'
- <LS_APPDATA>\Xenocode\Sandbox\scnner tools\20.1.11.06\2013.03.28T11.04\Native\STUBEXE\@APPDATA@\iexplore.exe
- <LS_APPDATA>\Xenocode\Sandbox\scnner tools\20.1.11.06\2013.03.28T11.04\Virtual\STUBEXE\@PROFILE@\Local Settings\server.exe
- <LS_APPDATA>MOePRfDWvp.exe
- <SYSTEM32>\rundll32.exe <SYSTEM32>\shimgvw.dll,ImageView_Fullscreen <LS_APPDATA>GiYxoeWPKg..jpg
- Handler for the 'iexplore.exe' process: %APPDATA%\iexplore.exe
- %HOMEPATH%\Recent\Local Settings.lnk
- %TEMP%\CRNJEUFU - 10-11-2012-10.37.10-PM.gif
- %APPDATA%\iexplore.exe
- %HOMEPATH%\Recent\Application DataGiYxoeWPKg..lnk
- <LS_APPDATA>MOePRfDWvp.exe
- <LS_APPDATA>GiYxoeWPKg..jpg
- 'sm##.gmail.com':587
- DNS ASK sm##.gmail.com
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'ShImgVw:CPreviewWnd' WindowName: ''