Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] 'UserAccounts' = '{2f775e9a-65a3-475e-8dc3-7fca0828c4fa}'
- <SYSTEM32>\regsvr32.exe /s %TEMP%\windll.dll
- <SYSTEM32>\ntvdm.exe -f -i1
- %TEMP%\sibelius-6.0.0-build-56.log
- %TEMP%\windll.dll
- %CommonProgramFiles%\User\UserAccounts.dll
- %WINDIR%\Temp\scs4.tmp
- %TEMP%\sibelius-6.0.0-build-56.exe
- %TEMP%\nso2.tmp\NSISdl.dll
- %WINDIR%\Temp\scs3.tmp
- %TEMP%\windll.dll
- %TEMP%\nso2.tmp\NSISdl.dll
- %WINDIR%\Temp\scs3.tmp
- %WINDIR%\Temp\scs4.tmp
- '20#.#26.167.92':80
- 20#.#26.167.92/tor3_1/trun2.php?tn########################
- ClassName: 'IEFrame' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'ConsoleWindowClass' WindowName: 'ntvdm-b3c.b40.380001'
- ClassName: 'MozillaUIWindowClass' WindowName: ''