Technical Information
- '%TEMP%\~nsu.tmp\Au_.exe' _?=<Current directory>\
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\r[1]
- %TEMP%\nsy3.tmp\inetc.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\r[1]
- %TEMP%\b
- %TEMP%\nsy3.tmp\System.dll
- %TEMP%\~nsu.tmp\Au_.exe
- %TEMP%\nsy3.tmp\t1.dll
- %TEMP%\nsy3.tmp\WmiInspector.dll
- %TEMP%\nsy3.tmp\t1.dll
- %TEMP%\nsy3.tmp\WmiInspector.dll
- %TEMP%\nsy3.tmp\inetc.dll
- %TEMP%\nsy3.tmp\System.dll
- 'da##.#iphysics.com':80
- da##.#iphysics.com/r?_=###############################################################################
- DNS ASK da##.#iphysics.com
- ClassName: '#32770' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'