Техническая информация
- <SYSTEM32>\sysocmgr.exe /i:%windir%\inf\sysoc.inf /u:"%TEMP%\p2p.txt"
- [<HKLM>\Software\Microsoft\MessengerService]
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\DShowNET.dll
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\libogg.dll
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\NSpeex.dll
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\theoradll.dll
- %TEMP%\IIS1.tmp
- %TEMP%\IIS2.tmp
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\libtheora.dll
- %TEMP%\p2p.txt
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\NAudio.dll
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\AxInterop.RDPCOMAPILib.dll
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\Interop.RDPCOMAPILib.dll
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\AvalonDock.dll
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\Interop.NetFwTypeLib.dll
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\Updater.exe
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\win32hlpr.dll
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\mingle.pfx
- %ALLUSERSPROFILE%\Application Data\crowsoft\mingleview\assembly\Microsoft.Windows.Shell.dll
- %TEMP%\IIS2.tmp
- %TEMP%\IIS1.tmp
- %WINDIR%\imsins.BAK
- ClassName: 'STUFF-BOOT' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''