Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] '{3757-0898-0794-0436}' = '%HOMEPATH%\Templates\system32.exe'
- %HOMEPATH%\Start Menu\Programs\Startup\File.exe
- '%PROGRAM_FILES%\%Internet Download Manager%\IDMan.exe'
- '%HOMEPATH%\Templates\system32.exe'
- '%HOMEPATH%\Local Settings\TempIDM621.exe' Settings\TempIDM621.exe
- '%HOMEPATH%\Local Settings\Tempserver.exe'
- '%HOMEPATH%\Local Settings\Tempapp.exe'
- '%WINDIR%\regedit.exe' /S ACT.reg
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\idm_tr.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_ar.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_chn.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\idm_th.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\idm_pl.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\idm_ptbr.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\idm_ru.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_es.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_fa.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_fr.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_dk.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_cht.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_cz.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_de.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\idm_nl.lng
- %PROGRAM_FILES%\%Internet Download Manager%\idmtdi.cat
- %PROGRAM_FILES%\%Internet Download Manager%\idmwfp.cat
- %PROGRAM_FILES%\%Internet Download Manager%\IDMGCExt.crx
- %PROGRAM_FILES%\%Internet Download Manager%\Toolbar\3d_smallHot_3.bmp
- %PROGRAM_FILES%\%Internet Download Manager%\Toolbar\3d_largeHot_3.bmp
- %PROGRAM_FILES%\%Internet Download Manager%\Toolbar\3d_largeHot_3_hdpi15.bmp
- %PROGRAM_FILES%\%Internet Download Manager%\Toolbar\3d_small_3.bmp
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\idm_fa.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\idm_fr.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\idm_it.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\idm_es.lng
- %PROGRAM_FILES%\%Internet Download Manager%\IDMFType.dat
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\idm_ar.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\idm_de.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_hu.lng
- %PROGRAM_FILES%\%Internet Download Manager%\idman.chm
- %PROGRAM_FILES%\%Internet Download Manager%\scheduler.chm
- %PROGRAM_FILES%\%Internet Download Manager%\tutor.chm
- %PROGRAM_FILES%\%Internet Download Manager%\grabber.chm
- %PROGRAM_FILES%\%Internet Download Manager%\Toolbar\3d_style_3.tbi
- %PROGRAM_FILES%\%Internet Download Manager%\idmantypeinfo.tlb
- %PROGRAM_FILES%\%Internet Download Manager%\idmmzcc.xpi
- %APPDATA%\IDM\defextmap.dat
- %APPDATA%\IDM\urlexclist.dat
- %HOMEPATH%\Templates\system32.exe
- %HOMEPATH%\Start Menu\Programs\Internet Download Manager\Uninstall IDM.lnk
- %PROGRAM_FILES%\%Internet Download Manager%\Act.reg
- %HOMEPATH%\Desktop\Internet Download Manager.lnk
- %HOMEPATH%\Start Menu\Programs\Internet Download Manager\Internet Download Manager.lnk
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\template_inst.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_pl.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_pt.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_ptbr.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_kr.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_id.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_it.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_iw.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_tr.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_ua.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\template.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_th.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_ru.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_sk.lng
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\inst_src.lng
- %PROGRAM_FILES%\%Internet Download Manager%\IEExt.htm
- %PROGRAM_FILES%\%Internet Download Manager%\IEGetAll.htm
- %PROGRAM_FILES%\%Internet Download Manager%\IEGetVL.htm
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\tips_tr.txt
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\tips_ptbr.txt
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\tips_ru.txt
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\tips_th.txt
- %PROGRAM_FILES%\%Internet Download Manager%\IDMan.exe
- %PROGRAM_FILES%\%Internet Download Manager%\idmBroker.exe
- %PROGRAM_FILES%\%Internet Download Manager%\IDMGrHlp.exe
- %PROGRAM_FILES%\%Internet Download Manager%\idmwfp.inf
- %PROGRAM_FILES%\%Internet Download Manager%\IEGetVL2.htm
- %PROGRAM_FILES%\%Internet Download Manager%\IDMSetup2.log
- %PROGRAM_FILES%\%Internet Download Manager%\idmtdi.inf
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\tips_pl.txt
- %PROGRAM_FILES%\%Internet Download Manager%\defexclist.txt
- %PROGRAM_FILES%\%Internet Download Manager%\license.txt
- %PROGRAM_FILES%\%Internet Download Manager%\tips.txt
- %HOMEPATH%\Local Settings\TempIDM621.exe
- %HOMEPATH%\Local Settings\Tempserver.exe
- %HOMEPATH%\Local Settings\Tempapp.exe
- %TEMP%\aut1.tmp
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\tips_fr.txt
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\tips_it.txt
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\tips_nl.txt
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\tips_fa.txt
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\tips_ar.txt
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\tips_de.txt
- %PROGRAM_FILES%\%Internet Download Manager%\Languages\tips_es.txt
- %PROGRAM_FILES%\%Internet Download Manager%\IDMIntegrator64.exe
- %PROGRAM_FILES%\%Internet Download Manager%\IDMNetMon64.dll
- %PROGRAM_FILES%\%Internet Download Manager%\IDMShellExt.dll
- %PROGRAM_FILES%\%Internet Download Manager%\IDMShellExt64.dll
- %PROGRAM_FILES%\%Internet Download Manager%\IDMNetMon.dll
- %PROGRAM_FILES%\%Internet Download Manager%\IDMIECC64.dll
- %PROGRAM_FILES%\%Internet Download Manager%\idmindex.dll
- %PROGRAM_FILES%\%Internet Download Manager%\idmmkb.dll
- %PROGRAM_FILES%\%Internet Download Manager%\idmwfp64.sys
- %PROGRAM_FILES%\%Internet Download Manager%\Toolbar\3d_large_3.bmp
- %PROGRAM_FILES%\%Internet Download Manager%\Toolbar\3d_large_3_hdpi15.bmp
- %PROGRAM_FILES%\%Internet Download Manager%\idmwfp32.sys
- %PROGRAM_FILES%\%Internet Download Manager%\idmvs.dll
- %PROGRAM_FILES%\%Internet Download Manager%\idmtdi32.sys
- %PROGRAM_FILES%\%Internet Download Manager%\idmtdi64.sys
- %PROGRAM_FILES%\%Internet Download Manager%\IDMIECC.dll
- %PROGRAM_FILES%\%Internet Download Manager%\downlWithIDM64.dll
- %PROGRAM_FILES%\%Internet Download Manager%\idmbrbtn.dll
- %PROGRAM_FILES%\%Internet Download Manager%\idmbrbtn64.dll
- %PROGRAM_FILES%\%Internet Download Manager%\downlWithIDM.dll
- %PROGRAM_FILES%\%Internet Download Manager%\IEMonitor.exe
- %PROGRAM_FILES%\%Internet Download Manager%\MediumILStart.exe
- %PROGRAM_FILES%\%Internet Download Manager%\Uninstall.exe
- %PROGRAM_FILES%\%Internet Download Manager%\IDMFType64.dll
- %PROGRAM_FILES%\%Internet Download Manager%\IDMGetAll.dll
- %PROGRAM_FILES%\%Internet Download Manager%\IDMGetAll64.dll
- %PROGRAM_FILES%\%Internet Download Manager%\idmftype.dll
- %PROGRAM_FILES%\%Internet Download Manager%\idmcchandler2.dll
- %PROGRAM_FILES%\%Internet Download Manager%\idmcchandler2_64.dll
- %PROGRAM_FILES%\%Internet Download Manager%\idmfsa.dll
- %TEMP%\aut1.tmp
- 'ar.##host.net':80
- 'wp#d':80
- ar.##host.net/download/56515589/dc27ef9a2a5a696915bc835d86b9d82786ba7134/Server.exe
- wp#d/wpad.dat
- DNS ASK ar.##host.net
- DNS ASK wp#d
- ClassName: 'RegEdit_RegEdit' WindowName: '(null)'
- ClassName: 'Indicator' WindowName: '(null)'
- ClassName: 'EDIT' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'