Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'iexplorer' = 'c:\iexplorer.exe'
- <SYSTEM32>\reg.exe add HKLM\Software\Microsoft\Windows\CurrentVersion\Run /v iexplorer /d c:\iexplorer.exe
- [<HKCU>\Software\Microsoft\MessengerService]
- C:\iexplorer.exe
- ClassName: '' WindowName: 'redshots/ai'
- ClassName: '' WindowName: 'redshots/di'
- ClassName: '' WindowName: 'redshots/g'
- ClassName: '' WindowName: 'redshots/dp'
- ClassName: '' WindowName: 'redshots/fe'
- ClassName: '' WindowName: 'redshots/km'
- ClassName: '' WindowName: 'redshots/ip'
- ClassName: '' WindowName: 'redshots/pb'
- ClassName: '' WindowName: 'redshots/dr'
- ClassName: '' WindowName: 'redshots/ar'
- ClassName: '' WindowName: 'redshots/ke'
- ClassName: '' WindowName: 'redshots/af'
- ClassName: '' WindowName: 'redshots/pn'
- ClassName: '' WindowName: 'redshots/fk'
- ClassName: '' WindowName: 'redshots/df'
- ClassName: '' WindowName: 'redshots/md'
- ClassName: '' WindowName: 'redshots/ml'
- ClassName: '' WindowName: 'redshots/r'
- ClassName: '' WindowName: 'redshots/eb'
- ClassName: '' WindowName: 'redshots/o'
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: '' WindowName: 'redshots/co'
- ClassName: '' WindowName: 'redshots/cc'
- ClassName: '' WindowName: 'redshots/mb'
- ClassName: '' WindowName: 'redshots/ei'
- ClassName: '' WindowName: 'redshots/mi'
- ClassName: '' WindowName: 'redshots/ed'
- ClassName: '' WindowName: 'redshots/mh'
- ClassName: '' WindowName: 'redshots/da'
- ClassName: '' WindowName: 'redshots/aa'
- ClassName: '' WindowName: 'redshots/eh'