Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'SystemMainvga' = 'rundll32.exe "<LS_APPDATA>\ClipWebaudio\SystemMainvga.dll",rasMouseUI appapiPath'
- %TEMP%\macrium-reflect-5.0.3782.exe
- <SYSTEM32>\rundll32.exe "<LS_APPDATA>\ClipWebaudio\SystemMainvga.dll",rasMouseUI appapiPath
- <SYSTEM32>\rundll32.exe "%TEMP%\odbcMap80.dll", rasMouseUI ClipMainTime
- %TEMP%\odbcMap80.dll
- <LS_APPDATA>\ClipWebaudio\SystemMainvga.dll
- %TEMP%\macrium-reflect-5.0.3782.log
- %TEMP%\macrium-reflect-5.0.3782.exe
- %TEMP%\nso2.tmp\NSISdl.dll
- %TEMP%\nso2.tmp\NSISdl.dll
- %TEMP%\odbcMap80.dll
- 'st##rs.info':80
- st##rs.info/st/stin.php?sf#####################################
- DNS ASK st##rs.info
- '<IP-адрес в локальной сети>':1035
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'DRMNetplugin' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''