Техническая информация
- 'C:\programdata\messengerplutymplayer2.exe'
- '<SYSTEM32>\wermgr.exe' "-outproc" "876" "3712"
- '<SYSTEM32>\conhost.exe'
- fsavgui.exe
- \Device\HarddiskVolume1\Boot\BCD
- \Device\HarddiskVolume1\Boot\BCD.LOG
- %TEMP%\aut30FF.tmp
- C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_7.6.7600.256_b5e039c0c75e9965a7f66312a15a967ab15fd_cab_0b181b6c\Report.wer
- %WINDIR%\Temp\OutofProcReport1055229.txt
- %WINDIR%\SoftwareDistribution\DataStore\Logs\tmp.edb
- %TEMP%\aut30EF.tmp
- %TEMP%\aut2923.tmp
- %TEMP%\5K4lb7YX2
- %TEMP%\aut28F3.tmp
- C:\ProgramData\messengerplutymplayer2.exe
- %TEMP%\5K4lb7YX2531d
- %TEMP%\aut30EF.tmp
- %TEMP%\aut30FF.tmp
- %WINDIR%\Temp\OutofProcReport1055229.txt
- %TEMP%\aut28F3.tmp
- %TEMP%\aut2923.tmp
- %TEMP%\~DF61633B7818D66AAD.TMP
- 'localhost':57365
- '22#.0.0.252':5355
- ClassName: '???????????????' WindowName: ''