Morpheus34
Yeni Üye
[align=center]Yetenek Sizsiniz'de Şok Görüntüler. Virüsünün Analiz Raporu H):
İncelenmistir
Hosts
176.53.119.204
DOMAIN
kingmedya.org
No ip
kingmedya3411.no-ip.biz
YAPTİGİ GÖREVLER.
C:\DOCUME~1
C:\DOCUME~1\User
C:\DOCUME~1\User\LOCALS~1
C:\DOCUME~1\User\LOCALS~1\Temp
C:\DOCUME~1\User\LOCALS~1\Temp\Flashplayer.18x12.i nstall_flash.exe
C:\WINDOWS\system32\msctfime.ime
C:\Documents and Settings\User\Local Settings\Temp
C:\Documents and Settings\User\Local Settings\Temp\Flashplayer.18x12.install_flash.exe
C:\Documents and Settings\User\Application Data\patrick_schwazy.exe
C:\Documents and Settings
C:\Documents and Settings\User
C:\Documents and Settings\User\Application Data
C:\DOCUME~1\User\LOCALS~1\Temp\crx.zip
C:\Documents and Settings\User\Application Data\install_flash.exe
C:\Documents and Settings\User\Application Data\install_flashSetup.exe
C:\Documents and Settings\User\Application Data\install_browser.exe
SPYNET SERVERİ KULLANİLMİS
MUTEX DEGERLERİ
CTF.TimListCache.FMPDefaultS-1-5-21-1547161642-507921405-839522115-1004MUTEX.DefaultS-1-5-21-1547161642-507921405-839522115-1004
ShimCacheMutex
Shell.CMruPidlList
MSCTF.Shared.MUTEX.IJF
İncelenmistir
Hosts
176.53.119.204
DOMAIN
kingmedya.org
No ip
kingmedya3411.no-ip.biz
YAPTİGİ GÖREVLER.
C:\DOCUME~1
C:\DOCUME~1\User
C:\DOCUME~1\User\LOCALS~1
C:\DOCUME~1\User\LOCALS~1\Temp
C:\DOCUME~1\User\LOCALS~1\Temp\Flashplayer.18x12.i nstall_flash.exe
C:\WINDOWS\system32\msctfime.ime
C:\Documents and Settings\User\Local Settings\Temp
C:\Documents and Settings\User\Local Settings\Temp\Flashplayer.18x12.install_flash.exe
C:\Documents and Settings\User\Application Data\patrick_schwazy.exe
C:\Documents and Settings
C:\Documents and Settings\User
C:\Documents and Settings\User\Application Data
C:\DOCUME~1\User\LOCALS~1\Temp\crx.zip
C:\Documents and Settings\User\Application Data\install_flash.exe
C:\Documents and Settings\User\Application Data\install_flashSetup.exe
C:\Documents and Settings\User\Application Data\install_browser.exe
SPYNET SERVERİ KULLANİLMİS
MUTEX DEGERLERİ
CTF.TimListCache.FMPDefaultS-1-5-21-1547161642-507921405-839522115-1004MUTEX.DefaultS-1-5-21-1547161642-507921405-839522115-1004
ShimCacheMutex
Shell.CMruPidlList
MSCTF.Shared.MUTEX.IJF