Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'msnmgr' = '%WINDIR%\msnmgr.exe'
- [<HKLM>\SOFTWARE\Microsoft\Active Setup\Installed Components\{9F78F093-9E08-FAD2-A726-76D28BEA3CC9}] 'StubPath' = '%WINDIR%\msnmgr.exe'
- %TEMP%\Setup.exe
- %WINDIR%\Explorer.EXE
- msnmsgr.exe
- ClassName: 'OLLYDBG' WindowName: ''
- ClassName: 'FileMonClass' WindowName: ''
- %WINDIR%\msnmgr.exe
- %TEMP%\Setup.exe
- %TEMP%\aut1.tmp
- %TEMP%\Setup.exe
- %TEMP%\aut1.tmp
- 'ra####k.no-ip.biz':3460
- DNS ASK ra####k.no-ip.biz
- ClassName: '18467-41' WindowName: ''