Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad] 'Winipdat' = '{16B33A85-2443-4FAB-8CA0-5E80E6D234E5}'
- [<HKLM>\SYSTEM\ControlSet001\Services\System Event Dispatcher] 'Start' = '00000002'
- '%WINDIR%\winipbin\sgvrfy32.exe' -i
- %WINDIR%\winipbin\bissimo.dll
- %WINDIR%\winipbin\svrltmgr.dll
- %WINDIR%\winipbin\quasimo.dll
- %WINDIR%\winipbin\mossimo.dll
- %WINDIR%\winipbin\sgvrfy32.exe
- %TEMP%\ra.dll
- %WINDIR%\winipbin\eanipw.dll
- %WINDIR%\winipbin\cmproxfr.dll
- %TEMP%\UUU2.tmp
- %WINDIR%\winipbin\getuxcod32.dll
- %TEMP%\UUU1.tmp
- %TEMP%\MSVxRsc.dll
- %WINDIR%\winipbin\vdorctrl.dll
- %WINDIR%\winipbin\rcxaemap.dll
- %TEMP%\UUU3.tmp
- %WINDIR%\winipbin\svrltwp.dll
- %TEMP%\ra.dll
- %TEMP%\MSVxRsc.dll
- %TEMP%\UUU3.tmp
- %TEMP%\UUU1.tmp
- %TEMP%\UUU2.tmp