Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'InfoWise' = '%ProgramFiles%\InfoWise\InfoWise.exe'
- '<SYSTEM32>\dumprep.exe' 2868 -dm 7 7 %TEMP%\WER10b9.dir00\InfoWise.exe.mdmp 16325836412027780
- '<SYSTEM32>\dumprep.exe' 2868 -dm 7 7 %TEMP%\WER10b9.dir00\InfoWise.exe.hdmp 16325836412027792
- '<SYSTEM32>\regsvr32.exe' /s "%ProgramFiles%\InfoWise\InfoWise.dll"
- '%ProgramFiles%\InfoWise\InfoWise.exe'
- %TEMP%\WER10b9.dir00\InfoWise.exe.hdmp
- %TEMP%\WER10b9.dir00\InfoWise.exe.mdmp
- %TEMP%\WER10b9.dir00\manifest.txt
- %TEMP%\WER10b9.dir00\appcompat.txt
- %ProgramFiles%\InfoWise\InfoWise.exe
- %ProgramFiles%\InfoWise\InfoWise.dll
- %ProgramFiles%\InfoWise\UnInstall.exe
- %ProgramFiles%\InfoWise\InfoWiseDll.dll
- 'se####.wisebar.co.kr':80
- http://se####.wisebar.co.kr/Update/A_P_WB_wisebar02_5/InfoWise.ini
- http://se####.wisebar.co.kr/install.asp?ve####################################################
- DNS ASK se####.wisebar.co.kr
- ClassName: 'Shell_TrayWnd' WindowName: ''