Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'globa' = '%PROGRAM_FILES%\Globdynam\serviciogloba.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'wpp' = '%PROGRAM_FILES%\Globdynam\wp.exe'
- [<HKLM>\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] 'DisableNotifications' = '00000001'
- Средство контроля пользовательских учетных записей (UAC)
- %PROGRAM_FILES%\Globdynam\wp.exe
- %PROGRAM_FILES%\Globdynam\serviciogloba.exe
- %PROGRAM_FILES%\Globdynam\wpp.exe
- %PROGRAM_FILES%\Globdynam\presentacion.pps
- %PROGRAM_FILES%\Globdynam\wpp.exe
- %WINDIR%\name
- %PROGRAM_FILES%\Globdynam\wp.exe
- %TEMP%\genteeE5\guig.dll
- %TEMP%\genteert.dll
- %PROGRAM_FILES%\Globdynam\serviciogloba.exe
- %TEMP%\genteeE5\setup_temp.gea
- %TEMP%\genteert.dll
- %TEMP%\genteeE5\setup_temp.gea
- %TEMP%\genteeE5\guig.dll
- 'any':1606
- 'gl####n.dyndns.org':300
- DNS ASK gl####n.dyndns.org
- '<IP-адрес в локальной сети>':1037
- ClassName: 'Indicator' WindowName: ''