Техническая информация
- <SYSTEM32>\cmd.exe /c ""%APPDATA%\delme.bat" "
- <SYSTEM32>\logonui.exe /status /shutdown
- ICQ.exe
- [<HKLM>\SOFTWARE\Miranda]
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Trillian]
- %APPDATA%\delme.bat
- %APPDATA%\Tool-Store-Log
- <Текущая директория>\Tool-Store-Log.txt
- %APPDATA%\Tool-Store-Log
- 'se######3b9s3.localdomain':21
- DNS ASK se######3b9s3.localdomain
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'StatusWindowClass' WindowName: ''