Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Internet Explorer\Extensions\{DCC5777A-6E88-BFCE-13CE-81F134789E7B}] 'Exec' = '%PROGRAM_FILES%\Remote Support System\GetSupport'
- [<HKLM>\SOFTWARE\Classes\Computer+Solutions\shell\open\command] '' = '%PROGRAM_FILES%\Remote Support System\GetSupport.exe %1'
- [<HKLM>\SYSTEM\ControlSet001\Services\SC] 'Start' = '00000002'
- '%TEMP%\7zS1.tmp\rssvnc.exe'
- '%TEMP%\7zS1.tmp\Run.exe'
- %TEMP%\7zS1.tmp\rssvnc.exe
- %TEMP%\7zS1.tmp\Run.exe
- %TEMP%\7zS1.tmp\vnchooks.dll
- %TEMP%\7zS1.tmp\GetSupport.exe
- %TEMP%\7zS1.tmp\Helpdesk.txt
- %PROGRAM_FILES%\ORL\VNC\rc4.key
- %PROGRAM_FILES%\Remote Support System\GetSupport.ico
- %PROGRAM_FILES%\Remote Support System\GetSupport.exe
- %PROGRAM_FILES%\Remote Support System\ani.gif
- %TEMP%\7zS1.tmp\ani.gif
- %TEMP%\7zS1.tmp\Logo.gif
- %TEMP%\7zS1.tmp\logo.bmp
- %TEMP%\7zS1.tmp\MSRC4Plugin.dsm
- %TEMP%\7zS1.tmp\Invoice.htm
- %TEMP%\7zS1.tmp\rc4.key
- %TEMP%\7zS1.tmp\UnZip32.dll
- %TEMP%\7zS1.tmp\GetSupport.ico
- %TEMP%\7zS1.tmp\Settings.ini
- %PROGRAM_FILES%\Remote Support System\GetSupport.exe
- 'cs###.no-ip.org':5500
- DNS ASK cs###.no-ip.org
- ClassName: 'WinVNC SC Tray Icon' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''