Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'system32' = '<SYSTEM32>\system32.exe'
- <SYSTEM32>\stdole2.tlb
- <SYSTEM32>\comcat.dll
- <SYSTEM32>\dllcache\stdole2.tlb файлом <SYSTEM32>\dllcache\stdole2.tlb.new
- <SYSTEM32>\dllcache\comcat.dll файлом <SYSTEM32>\dllcache\comcat.dll.new
- <SYSTEM32>\dllcache\comcat.dll.new
- <SYSTEM32>\dllcache\stdole2.tlb.new
- <SYSTEM32>\comcat.dll
- <SYSTEM32>\stdole2.tlb
- '%TEMP%\sp_setup.exe'
- '%TEMP%\irsetup.exe'
- <SYSTEM32>\suf2.tmp
- <SYSTEM32>\RICHTX32.OCX
- <SYSTEM32>\system32.exe
- %TEMP%\sp_setup.exe
- <SYSTEM32>\suf3.tmp
- <SYSTEM32>\MSCOMCTL.OCX
- <SYSTEM32>\MSINET.OCX
- %TEMP%\suf6lng.9
- %TEMP%\irsetup.dat
- %TEMP%\irsetup.exe
- <SYSTEM32>\suf1.tmp
- %TEMP%\irsetup.ini
- %TEMP%\IRIMG1.BMP
- %TEMP%\suf6lng.9
- %TEMP%\irsetup.ini
- %TEMP%\irsetup.dat
- <SYSTEM32>\suf1.tmp
- <SYSTEM32>\suf3.tmp
- %TEMP%\IRIMG1.BMP
- ClassName: 'MS_WINHELP' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'