Technical Information
- [HKLM\System\CurrentControlSet\Services\ialdnwxf] 'ImagePath' = '<Current directory>\superec.ProcessMemory.sys'
- 'ialdnwxf' <Current directory>\superec.ProcessMemory.sys
- <Current directory>\superec.processmemory.sys
- %WINDIR%\temp\udd85e1.tmp
- %LOCALAPPDATA%\microsoft\windows\history\history.ie5\mshist012023110620231107\index.dat
- %WINDIR%\temp\udd85e1.tmp
- '8u##.com':80
- http://www.8u##.com/
- http://www.8u##.com/5.txt
- http://www.8u##.com/6.txt
- http://www.8u##.com/7.txt
- http://www.8u##.com/cdn-cgi/styles/main.css
- http://www.8u##.com/cdn-cgi/images/cf-icon-browser.png
- http://www.8u##.com/cdn-cgi/images/cf-icon-ok.png
- http://www.8u##.com/cdn-cgi/images/cf-icon-server.png
- http://www.8u##.com/cdn-cgi/images/cf-icon-cloud.png
- http://www.8u##.com/cdn-cgi/images/cf-icon-error.png
- DNS ASK 8u##.com
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'MS_WebCheckMonitor' WindowName: ''