Technical Information
- '<SYSTEM32>\regsvr32.exe' /s <SYSTEM32>\NetLive.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\2009[1].html
- <SYSTEM32>\NetLive.dll
- <Auxiliary element>
- <SYSTEM32>\NetLive.dll
- 'www.ha##y.com':80
- 'localhost':1035
- www.ha##y.com/2009.html
- DNS ASK www.ha##y.com
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: '(null)' WindowName: 'GINA Logon'
- ClassName: 'MS_WINHELP' WindowName: '(null)'