Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Win Update' = '%TEMP%\Win Update\Win Update.exe'
- '%TEMP%\Tamo_setup.exe'
- '%WINDIR%\Microsoft.NET\Framework\v2.0.50727\vbc.exe'
- %WINDIR%\Microsoft.NET\Framework\v2.0.50727\vbc.exe
- %TEMP%\~SBD.tmp
- %TEMP%\~SBE.tmp
- %TEMP%\~SBC.tmp
- %TEMP%\~SBA.tmp
- %TEMP%\~SBB.tmp
- %TEMP%\~SB12.tmp
- %TEMP%\~SB13.tmp
- %TEMP%\~SB11.tmp
- %TEMP%\~SBF.tmp
- %TEMP%\~SB10.tmp
- %TEMP%\~SB9.tmp
- %TEMP%\LSB3.tmp
- %TEMP%\~SB4.tmp
- %TEMP%\LSB2.tmp
- %TEMP%\Tamo_setup.exe
- %TEMP%\LSB1.tmp
- %TEMP%\~SB8.tmp
- %TEMP%\Win Update\Win Update.exe
- %TEMP%\~SB7.tmp
- %TEMP%\~SB5.tmp
- %TEMP%\~SB6.tmp
- %TEMP%\~SB11.tmp
- %TEMP%\~SB12.tmp
- %TEMP%\~SBE.tmp
- %TEMP%\LSB1.tmp
- %TEMP%\6f90c480-2cea-11e4-4823-000324b00029\EULA CommView.rtf
- %TEMP%\~SB9.tmp в %TEMP%\6f90c480-2cea-11e4-4823-000324b00029\afind.dll
- %TEMP%\~SB8.tmp в %TEMP%\6f90c480-2cea-11e4-4823-000324b00029\EULA CommView.rtf
- %TEMP%\~SB7.tmp в %TEMP%\6f90c480-2cea-11e4-4823-000324b00029\EULA CommView.rtf
- '95.##0.125.58':9155
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Indicator' WindowName: ''