Техническая информация
- '%TEMP%\nsw2.tmp\ymsgr_suite_setup.exe' /yfn=msgr11us.exe /ybsini=%TEMP%\nsw2.tmp\BOOTST~1.INI
- '<SYSTEM32>\1234.exe'
- '<SYSTEM32>\msgr11us.exe'
- [<HKCU>\Software\Yahoo\pager]
- %TEMP%\nsw4.tmp\ywiseextU.dll
- %TEMP%\nsw4.tmp\eula.rtf
- %TEMP%\nsw4.tmp\finish.ini
- %TEMP%\nsw4.tmp\s3.bmp
- %TEMP%\nsw4.tmp\s4.bmp
- %TEMP%\nsw4.tmp\s5.bmp
- %TEMP%\nsw4.tmp\welcome.ini
- %TEMP%\nsw4.tmp\modern-header.bmp
- %TEMP%\nsw4.tmp\InstallOptions.dll
- %TEMP%\nsw4.tmp\legal.ini
- %TEMP%\nsw4.tmp\review.ini
- %TEMP%\nsw4.tmp\software.ini
- %TEMP%\nsw4.tmp\s2.bmp
- %TEMP%\nsw2.tmp\bootstrap.ini
- %TEMP%\nsw2.tmp\Base64.dll
- %TEMP%\nsw2.tmp\ymsgr_suite_setup.exe
- <SYSTEM32>\1234.exe
- <SYSTEM32>\msgr11us.exe
- %TEMP%\nsw2.tmp\System.dll
- %HOMEPATH%\Local Settings\Temporary Internet Files\Content.IE5\KHMHGZ4F\ymsgr11_us[1].ini
- %TEMP%\nsw4.tmp\ymsgr11_us.ini
- %TEMP%\nsw4.tmp\s1.bmp
- %TEMP%\nsw2.tmp\YExecShell.dll
- %TEMP%\nsw4.tmp\System.dll
- %TEMP%\nsw4.tmp\InetLoad_vms.dll
- '67.##5.160.76':80
- 67.##5.160.76/msgr/11/ini/ymsgr11_us.ini
- DNS ASK in######rstats.yahoo.com
- DNS ASK in#####.msg.yahoo.com
- DNS ASK rd.####ware.yahoo.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'EDIT' WindowName: '(null)'