Техническая информация
- <SYSTEM32>\tasks\microsoft\windows\mydir\mytaskname
- %TEMP%\de7c1ea22ff741c38699e586f17afac1.7z
- %ProgramFiles(x86)%\yenote\yenotesch.dll
- %ProgramFiles(x86)%\yenote\yenotehotinfo.exe
- %ProgramFiles(x86)%\yenote\yenote.exe
- %ProgramFiles(x86)%\yenote\utilities.dll
- %ProgramFiles(x86)%\yenote\soui.dll
- %ProgramFiles(x86)%\yenote\render-gdi.dll
- %ProgramFiles(x86)%\yenote\imgdecoder-gdip.dll
- %ProgramFiles(x86)%\yenote\yenoteuninst.exe
- %TEMP%\de7c1ea22ff741c38699e586f17afac1\yenoteupdate.exe
- %TEMP%\de7c1ea22ff741c38699e586f17afac1\yenotehotinfo.exe
- %TEMP%\de7c1ea22ff741c38699e586f17afac1\yenote.exe
- %TEMP%\de7c1ea22ff741c38699e586f17afac1\yenotesch.dll
- %TEMP%\de7c1ea22ff741c38699e586f17afac1\utilities.dll
- %TEMP%\de7c1ea22ff741c38699e586f17afac1\soui.dll
- %TEMP%\de7c1ea22ff741c38699e586f17afac1\render-gdi.dll
- %TEMP%\de7c1ea22ff741c38699e586f17afac1\imgdecoder-gdip.dll
- %TEMP%\de7c1ea22ff741c38699e586f17afac1\yenoteuninst.exe
- %ProgramFiles(x86)%\yenote\yenoteupdate.exe
- 'cl###moon.cn':9999
- DNS ASK cl###moon.cn
- '%ProgramFiles(x86)%\yenote\yenote.exe' /mapt
- '%ProgramFiles(x86)%\yenote\yenote.exe' /mapt' (со скрытым окном)
- '%WINDIR%\syswow64\rundll32.exe' "%ProgramFiles(x86)%\YENote\YENoteSch.dll",DllRegisterServer' (со скрытым окном)
- '%WINDIR%\syswow64\rundll32.exe' "%ProgramFiles(x86)%\YENote\YENoteSch.dll",DllRegisterServer