Техническая информация
- %WINDIR%\Microsoft.NET\Framework\v2.0.50727\vbc.exe /scomma %TEMP%\data.dmp
- %WINDIR%\Microsoft.NET\Framework\v2.0.50727\vbc.exe
- iexplore.exe
- firefox.exe
- chrome.exe
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FTP Commander]
- [<HKCU>\Software\Paltalk]
- [<HKCU>\Software\Yahoo\pager]
- ClassName: '' WindowName: 'Yahoo! Messenger'
- %TEMP%\18894.dmp
- %TEMP%\data.dmp
- %TEMP%\dw.log
- ClassName: 'Shell_TrayWnd' WindowName: ''