Техническая информация
- %TEMP%\3632315\ymdc.exe /guid
- %TEMP%\GLB3.tmp /ybsini=%TEMP%\nsb2.tmp\BOOTST~1.INI4736 %TEMP%\nsb2.tmp\YMSGR_~1.EXE
- %TEMP%\nsb2.tmp\ymsgr_suite_setup.exe /ybsini=%TEMP%\nsb2.tmp\BOOTST~1.INI
- [<HKCU>\Software\yahoo\pager]
- %TEMP%\3632315\~GLH0007.TMP
- %TEMP%\3632315\~GLH0008.TMP
- %TEMP%\3632315\~GLH0006.TMP
- %TEMP%\3632315\~GLH0004.TMP
- %TEMP%\3632315\~GLH0005.TMP
- %TEMP%\3632315\~GLH0009.TMP
- %TEMP%\nseE.tmp\Base64.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\bga_1_uk[1].gif
- %TEMP%\nseE.tmp\System.dll
- %TEMP%\3632315\~GLH000a.TMP
- %TEMP%\3632315\~GLH0003.TMP
- %TEMP%\nsb2.tmp\YExecShell.dll
- %TEMP%\GLB3.tmp
- %TEMP%\nsb2.tmp\ymsgr_suite_setup.exe
- %TEMP%\nsb2.tmp\System.dll
- %TEMP%\nsb2.tmp\bootstrap.ini
- %TEMP%\GLC4.tmp
- %TEMP%\3632315\~GLH0001.TMP
- %TEMP%\3632315\~GLH0002.TMP
- %TEMP%\~GLH0000.TMP
- %TEMP%\GLK5.tmp
- %TEMP%\GLM6.tmp
- %TEMP%\nseE.tmp\System.dll
- %TEMP%\nseE.tmp\Base64.dll
- '67.##5.160.76':80
- 'l.##mg.com':80
- 'localhost':1035
- 67.##5.160.76/ycontent/stats.php?ve###################################################################
- l.##mg.com/us.yimg.com/i/us/msg/9/bill/bga_1_uk.gif
- DNS ASK in#####.msg.yahoo.com
- DNS ASK l.##mg.com
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''