Potential IP "11.161.0.0" found in string "" Potential IP "12.0.4.0" found in string "" "iexplore.exe" wrote 4 bytes to a remote process "C:\Program Files\Internet Explorer\iexplore.exe" (Handle: 888) "iexplore.exe" wrote 52 bytes to a remote process "C:\Program Files\Internet Explorer\iexplore.exe" (Handle: 888) "iexplore.exe" wrote 32 bytes to a remote process "C:\Program Files\Internet Explorer\iexplore.exe" (Handle: 888) "SoundBoosterTaskHost.exe" wrote 52 bytes to a remote process "C:\Windows\System32\regsvr32.exe" (Handle: 664) "SoundBoosterTaskHost.exe" wrote 32 bytes to a remote process "C:\Windows\System32\regsvr32.exe" (Handle: 664) "SoundBoosterTaskHost.exe" wrote 4 bytes to a remote process "C:\Windows\System32\regsvr32.exe" (Handle: 664) "SoundBoosterTaskHost.exe" wrote 1500 bytes to a remote process "C:\Windows\System32\regsvr32.exe" (Handle: 664) "iexplore.exe" wrote 32 bytes to a remote process "C:\Program Files\Internet Explorer\iexplore.exe" (Handle: 872) "iexplore.exe" wrote 4 bytes to a remote process "C:\Program Files\Internet Explorer\iexplore.exe" (Handle: 872) "iexplore.exe" wrote 52 bytes to a remote process "C:\Program Files\Internet Explorer\iexplore.exe" (Handle: 872)
"net.exe" wrote 4 bytes to a remote process "C:\Windows\System32\net1.exe" (Handle: 112) "net.exe" wrote 52 bytes to a remote process "C:\Windows\System32\net1.exe" (Handle: 112) "net.exe" wrote 32 bytes to a remote process "C:\Windows\System32\net1.exe" (Handle: 112) "LetasoftSoundBooster1.11.0.514.tmp" wrote 4 bytes to a remote process "C:\Program Files\Letasoft Sound Booster\SoundBoosterService.exe" (Handle: 596) "LetasoftSoundBooster1.11.0.514.tmp" wrote 52 bytes to a remote process "C:\Program Files\Letasoft Sound Booster\SoundBoosterService.exe" (Handle: 596) "LetasoftSoundBooster1.11.0.514.tmp" wrote 32 bytes to a remote process "C:\Program Files\Letasoft Sound Booster\SoundBoosterService.exe" (Handle: 596) "LetasoftSoundBooster1.11.0.514.tmp" wrote 4 bytes to a remote process "C:\Program Files\Letasoft Sound Booster\SoundBoosterTaskHost.exe" (Handle: 812) "LetasoftSoundBooster1.11.0.514.tmp" wrote 52 bytes to a remote process "C:\Program Files\Letasoft Sound Booster\SoundBoosterTaskHost.exe" (Handle: 812) "LetasoftSoundBooster1.11.0.514.tmp" wrote 32 bytes to a remote process "C:\Program Files\Letasoft Sound Booster\SoundBoosterTaskHost.exe" (Handle: 812) "LetasoftSoundBooster1.11.0.514.tmp" wrote 4 bytes to a remote process "C:\Program Files\Internet Explorer\iexplore.exe" (Handle: 860) "LetasoftSoundBooster1.11.0.514.tmp" wrote 52 bytes to a remote process "C:\Program Files\Internet Explorer\iexplore.exe" (Handle: 860) "LetasoftSoundBooster1.11.0.514.tmp" wrote 32 bytes to a remote process "C:\Program Files\Internet Explorer\iexplore.exe" (Handle: 860) "LetasoftSoundBooster1.11.0.514.tmp" wrote 4 bytes to a remote process "C:\Program Files\Internet Explorer\iexplore.exe" (Handle: 588)
"LetasoftSoundBooster1.11.0.514.tmp" wrote 52 bytes to a remote process "C:\Program Files\Internet Explorer\iexplore.exe" (Handle: 588) "LetasoftSoundBooster1.11.0.514.tmp" wrote 32 bytes to a remote process "C:\Program Files\Internet Explorer\iexplore.exe" (Handle: 588) "LetasoftSoundBooster1.11.0.514.tmp" wrote 4 bytes to a remote process "C:\Windows\System32\net.exe" (Handle: 320)
"LetasoftSoundBooster1.11.0.514.tmp" wrote 52 bytes to a remote process "C:\Windows\System32\net.exe" (Handle: 320) "LetasoftSoundBooster1.11.0.514.tmp" wrote 32 bytes to a remote process "C:\Windows\System32\net.exe" (Handle: 320)
"LetasoftSoundBooster1.11.0.514.exe" wrote 52 bytes to a remote process "C:\Users\%USERNAME%\AppData\Local\Temp\is-PI4OP.tmp\LetasoftSoundBooster1.11.0.514.tmp" (Handle: 164) "LetasoftSoundBooster1.11.0.514.exe" wrote 32 bytes to a remote process "C:\Users\%USERNAME%\AppData\Local\Temp\is-PI4OP.tmp\LetasoftSoundBooster1.11.0.514.tmp" (Handle: 164) "LetasoftSoundBooster1.11.0.514.exe" wrote 4 bytes to a remote process "C:\Users\%USERNAME%\AppData\Local\Temp\is-PI4OP.tmp\LetasoftSoundBooster1.11.0.514.tmp" (Handle: 164) "LetasoftSoundBooster1.11.0.514.exe" wrote 1500 bytes to a remote process "%TEMP%\is-PI4OP.tmp\LetasoftSoundBooster1.11.0.514.tmp" (Handle: 164)