Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'tasksgr' = '%TEMP%\temps18.exe'
- '%APPDATA%\Java\Security\tasksgr.exe'
- '%TEMP%\temps18.exe'
- '%TEMP%\Setup_GooglePasswordDecryptor.exe'
- %TEMP%\nse2.tmp\Confirm.ini
- %TEMP%\nse2.tmp\isWelcome.ini
- %TEMP%\nse2.tmp\leftimg.bmp
- %APPDATA%\Java\Security\tasksgr.exe
- %TEMP%\nse2.tmp\InstallOptions.dll
- %TEMP%\nse2.tmp\Finish.ini
- %TEMP%\nse2.tmp\btmimg.bmp
- %TEMP%\Setup_GooglePasswordDecryptor.exe
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- %TEMP%\nse2.tmp\header.bmp
- %TEMP%\temps18.exe
- %TEMP%\temps18.exe
- %TEMP%\~DF73F1.tmp
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- 'localhost':1035
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'Indicator' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'