Техническая информация
- '<SYSTEM32>\msiexec.exe' /V
- '<SYSTEM32>\msiexec.exe' -Embedding 57A4B71CBBC0F45127EDE91B14CFF8C2 C
- '%TEMP%\Setup.RemoteDesktopManager.6.1.3.0.exe'
- '<SYSTEM32>\msiexec.exe'
- %TEMP%\26864.msi
- %APPDATA%\Microsoft\CryptnetUrlCache\MetaData\B69D763EB21649DA26F20618312DEE70
- %APPDATA%\Devolutions inc\Remote Desktop Manager\install\2C299D0\RemoteDesktopManager.AddOn.dll
- %APPDATA%\Devolutions inc\Remote Desktop Manager\install\2C299D0\Setup.RemoteDesktopManager.6.1.3.0.msi
- %TEMP%\MSI2.tmp
- %TEMP%\MSI26865.LOG
- %APPDATA%\Microsoft\CryptnetUrlCache\Content\B69D763EB21649DA26F20618312DEE70
- %TEMP%\MSI1.tmp
- %APPDATA%\Devolutions inc\Remote Desktop Manager\install\2C299D0\RemoteDesktopManager.exe
- <SYSTEM32>\MSINET.OCX.nb5.tmp
- <SYSTEM32>\MSINET.OCX
- <SYSTEM32>\ATK.dll.nb5.tmp
- <SYSTEM32>\ATK.dll
- %APPDATA%\Devolutions inc\Remote Desktop Manager\install\decoder.dll
- %APPDATA%\Devolutions inc\Remote Desktop Manager\install\2C299D0\Readme.RemoteDesktopManager.htm
- %TEMP%\Setup.RemoteDesktopManager.6.1.3.0.exe.nb5.tmp
- %TEMP%\Setup.RemoteDesktopManager.6.1.3.0.exe
- %TEMP%\MSI1.tmp
- %TEMP%\MSI2.tmp
- %TEMP%\Setup.RemoteDesktopManager.6.1.3.0.exe.nb5.tmp
- <SYSTEM32>\ATK.dll.nb5.tmp
- <SYSTEM32>\MSINET.OCX.nb5.tmp
- 'cr#.##ertrust.com':80
- 'wp#d':80
- http://cr#.##ertrust.com/UTN-USERFirst-Object.crl
- http://11#.#11.111.1/wpad.dat via wp#d
- DNS ASK cr#.##ertrust.com
- DNS ASK wp#d
- ClassName: 'Shell_TrayWnd' WindowName: ''