Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Tasksgr(TM)' = '%TEMP%\Explorer1.exe'
- '%APPDATA%\Java\Security\tasksgr.exe'
- '%TEMP%\Start.exe'
- '%TEMP%\Explorer1.exe'
- %TEMP%\TempFolder.aaa\xtras\INetURL.x32
- %TEMP%\TempFolder.aaa\xtras\NetFile.x32
- %APPDATA%\Java\Security\tasksgr.exe
- %TEMP%\TempFolder.aaa\xtras\resaudio.x32
- %TEMP%\TempFolder.aaa\xtras\NetLingo.x32
- %TEMP%\TempFolder.aaa\xtras\Sound Control.x32
- %TEMP%\TempFolder.aaa\xtras\Flash Asset.x32
- %TEMP%\TempFolder.aaa\xtras\SWADCmpr.x32
- %TEMP%\TempFolder.aaa\xtras\DirectSound.x32
- %TEMP%\Explorer1.exe
- %TEMP%\Start.exe
- %TEMP%\$inst\2.tmp
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\TempFolder.aaa\iml32.dll
- %TEMP%\TempFolder.aaa\msvcrt.dll
- %TEMP%\TempFolder.aaa\proj.dll
- %TEMP%\TempFolder.aaa\dirapi.dll
- %TEMP%\Explorer1.exe
- %TEMP%\~DF750C.tmp
- %TEMP%\$inst\temp_0.tmp
- %TEMP%\$inst\2.tmp
- 'localhost':1036
- ClassName: 'MS_WebcheckMonitor' WindowName: '(null)'
- ClassName: 'Indicator' WindowName: '(null)'
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'
- ClassName: 'MS_AutodialMonitor' WindowName: '(null)'