Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\hardisk.exe
- '%HOMEPATH%\Start Menu\Programs\Startup\hardisk.exe'
- '<SYSTEM32>\ntvdm.exe' -f
- '<SYSTEM32>\taskkill.exe' /im openv.exe /f
- %WINDIR%\Temp\scs1.tmp
- %WINDIR%\Temp\scs2.tmp
- %TEMP%\YahooMessenger.exe
- %TEMP%\~DFB55.tmp
- %WINDIR%\Temp\scs2.tmp
- %WINDIR%\Temp\scs1.tmp
- 'localhost':1036
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: '(null)' WindowName: '(null)'
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-b50.b58.390002'