Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'InsideTool' = '%PROGRAM_FILES%\InsideTool\InsideTool.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'InsideTool' = '"%PROGRAM_FILES%\InsideTool\InsideTool.exe"'
- '%PROGRAM_FILES%\InsideTool\InsideTool.exe'
- '<SYSTEM32>\regsvr32.exe' /u /s "%PROGRAM_FILES%\PostTip\PostTip.dll"
- '<SYSTEM32>\regsvr32.exe' /s "%PROGRAM_FILES%\InsideTool\InsideTool.dll"
- '<SYSTEM32>\regsvr32.exe' /u /s "%PROGRAM_FILES%\SideTab\SideTab.dll"
- '<SYSTEM32>\regsvr32.exe' /u /s "%PROGRAM_FILES%\IETab\IETab.dll"
- '<SYSTEM32>\regsvr32.exe' /u /s "%PROGRAM_FILES%\WallTab\WallTab.dll"
- %TEMP%\nso2.tmp\IpConfig.dll
- %PROGRAM_FILES%\InsideTool\Uninstall.exe
- %TEMP%\inst.xxx
- %TEMP%\nso2.tmp\NSISdl.dll
- %TEMP%\nso2.tmp\UAC.dll
- %TEMP%\nso2.tmp\nsProcess.dll
- %PROGRAM_FILES%\InsideTool\InsideTool.exe
- %PROGRAM_FILES%\InsideTool\InsideTool.dll
- %TEMP%\nso2.tmp\nsProcess.dll
- %TEMP%\nso2.tmp\UAC.dll
- %TEMP%\nso2.tmp\IpConfig.dll
- %TEMP%\nso2.tmp\NSISdl.dll
- 'in#####ool.ietab.co.kr':80
- in#####ool.ietab.co.kr/install.asp?ve###############################################
- in#####ool.ietab.co.kr/update/IT145/InsideTool.ini
- DNS ASK www.ie##b.co.kr
- DNS ASK in#####ool.ietab.co.kr
- ClassName: 'InsideToolToastPop' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: '#32770' WindowName: '(null)'