Technical Information
- '<SYSTEM32>\eyneijxp.exe'
- '<SYSTEM32>\xxfpiyss.exe'
- '<SYSTEM32>\etiuomfz.exe'
- '<SYSTEM32>\kvzpdqmb.exe'
- '<SYSTEM32>\eecldnfd.exe'
- '<SYSTEM32>\uoxcmjde.exe'
- '<SYSTEM32>\dfjutwjs.exe'
- '<SYSTEM32>\bpvwqhvo.exe'
- '<SYSTEM32>\xctociav.exe'
- '<SYSTEM32>\xasekisp.exe'
- '<SYSTEM32>\kcyrlxau.exe'
- '<SYSTEM32>\wcjpoxjn.exe'
- '<SYSTEM32>\cpshnomm.exe'
- '<SYSTEM32>\xmydhows.exe'
- '<SYSTEM32>\yjpkbcrp.exe'
- '<SYSTEM32>\vpyqesbg.exe'
- '<SYSTEM32>\raswlrnn.exe'
- '<SYSTEM32>\kioqsfus.exe'
- '<SYSTEM32>\hnqrpknr.exe'
- '<SYSTEM32>\nloooars.exe'
- '<SYSTEM32>\gwhocpbu.exe'
- <SYSTEM32>\svchost.exe
- ClassName: '' WindowName: 'Process Monitor - Sysinternals: www.sysinternals.com'
- ClassName: 'PROCMON_WINDOW_CLASS' WindowName: ''
- ClassName: '' WindowName: 'Registry Monitor - Sysinternals: www.sysinternals.com'
- ClassName: 'RegmonClass' WindowName: ''
- ClassName: '' WindowName: 'File Monitor - Sysinternals: www.sysinternals.com'
- ClassName: 'GBDYLLO' WindowName: ''
- ClassName: 'OLLYDBG' WindowName: ''
- ClassName: 'FilemonClass' WindowName: ''
- ClassName: 'pediy06' WindowName: ''
- <SYSTEM32>\eecldnfd.exe
- <SYSTEM32>\etiuomfz.exe
- <SYSTEM32>\eyneijxp.exe
- <SYSTEM32>\kioqsfus.exe
- <SYSTEM32>\kcyrlxau.exe
- <SYSTEM32>\kvzpdqmb.exe
- <SYSTEM32>\xxfpiyss.exe
- <SYSTEM32>\uoxcmjde.exe
- <SYSTEM32>\dfjutwjs.exe
- <SYSTEM32>\uwspmvrw.exe
- <SYSTEM32>\xctociav.exe
- <SYSTEM32>\xasekisp.exe
- <SYSTEM32>\bpvwqhvo.exe
- <SYSTEM32>\yjpkbcrp.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\mswinsck[1].ocx
- <SYSTEM32>\vpyqesbg.exe
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\mswinsck[1].ocx
- <SYSTEM32>\MSWINSCK.ocx
- <SYSTEM32>\xmydhows.exe
- <SYSTEM32>\gwhocpbu.exe
- <SYSTEM32>\hnqrpknr.exe
- <SYSTEM32>\raswlrnn.exe
- <SYSTEM32>\wcjpoxjn.exe
- <SYSTEM32>\cpshnomm.exe
- <SYSTEM32>\nloooars.exe
- <SYSTEM32>\eyneijxp.exe
- <SYSTEM32>\xxfpiyss.exe
- <SYSTEM32>\etiuomfz.exe
- <SYSTEM32>\kvzpdqmb.exe
- <SYSTEM32>\eecldnfd.exe
- <SYSTEM32>\xctociav.exe
- <SYSTEM32>\dfjutwjs.exe
- <SYSTEM32>\uwspmvrw.exe
- <SYSTEM32>\uoxcmjde.exe
- <SYSTEM32>\xasekisp.exe
- <SYSTEM32>\bpvwqhvo.exe
- <SYSTEM32>\wcjpoxjn.exe
- <SYSTEM32>\cpshnomm.exe
- <SYSTEM32>\xmydhows.exe
- <SYSTEM32>\yjpkbcrp.exe
- <SYSTEM32>\vpyqesbg.exe
- <SYSTEM32>\nloooars.exe
- <SYSTEM32>\kioqsfus.exe
- <SYSTEM32>\kcyrlxau.exe
- <SYSTEM32>\raswlrnn.exe
- <SYSTEM32>\gwhocpbu.exe
- <SYSTEM32>\hnqrpknr.exe
- %TEMP%\~DFF80E.tmp
- %TEMP%\~DF9DE4.tmp
- %TEMP%\~DF1860.tmp
- %TEMP%\~DF8C56.tmp
- %TEMP%\~DF68A3.tmp
- %TEMP%\~DF7C0E.tmp
- %TEMP%\~DF9095.tmp
- %TEMP%\~DF3DEA.tmp
- %TEMP%\~DFB228.tmp
- %TEMP%\~DF2D89.tmp
- %TEMP%\~DFBB4.tmp
- %TEMP%\~DF7176.tmp
- %TEMP%\~DF516E.tmp
- %TEMP%\~DFC332.tmp
- %TEMP%\~DF3F76.tmp
- %TEMP%\~DFDF26.tmp
- %TEMP%\~DFF96E.tmp
- %TEMP%\~DFB14.tmp
- %TEMP%\~DFE492.tmp
- %TEMP%\~DF5771.tmp
- %TEMP%\~DFD514.tmp
- %TEMP%\~DF8540.tmp
- %TEMP%\~DFDDFF.tmp
- %TEMP%\~DF97D2.tmp
- %TEMP%\~DF3FD.tmp
- %TEMP%\~DF7E92.tmp
- %TEMP%\~DF5E5B.tmp
- %TEMP%\~DF53FE.tmp
- %TEMP%\~DF8B20.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\mswinsck[1].ocx
- %TEMP%\~DFDCDF.tmp
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\U98D4X8H\mswinsck[1].ocx
- %TEMP%\~DF1BB6.tmp
- %TEMP%\~DF557D.tmp
- %TEMP%\~DF3333.tmp
- %TEMP%\~DFA32D.tmp
- %TEMP%\~DF1F17.tmp
- %TEMP%\~DFC70A.tmp
- %TEMP%\~DFD43F.tmp
- %TEMP%\~DFEE95.tmp
- %TEMP%\~DFCE77.tmp
- %TEMP%\~DF48C0.tmp
- %TEMP%\~DFB8FD.tmp
- %TEMP%\~DF6C43.tmp
- 'localhost':1066
- 'localhost':1068
- 'localhost':1064
- 'localhost':1060
- 'localhost':1062
- 'localhost':1070
- 'localhost':1078
- 'localhost':1080
- 'localhost':1076
- 'localhost':1072
- 'localhost':1074
- 'localhost':1058
- 'localhost':1042
- 'localhost':1044
- 'localhost':1040
- 'localhost':1037
- 'pd###.egloos.com':80
- 'localhost':1046
- 'localhost':1054
- 'localhost':1056
- 'localhost':1052
- 'localhost':1048
- 'localhost':1050
- pd###.egloos.com/pds/201304/27/64/mswinsck.ocx
- DNS ASK pd###.egloos.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: '18467-41' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''