Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'taskstm' = '<SYSTEM32>\taskstm.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'taskmmr' = '<SYSTEM32>\taskmmr.exe'
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'taskmsg' = '<SYSTEM32>\taskmsg.exe'
- Средство контроля пользовательских учетных записей (UAC)
- <SYSTEM32>\STML.ini
- %TEMP%\~DF9D2D.tmp
- 'ni###.#y.glassey.com':13
- 'ni###.#c.glassey.com':13
- 'ni###.datum.com':13
- 'ni###.##l-va.truetime.com':13
- 'ni###.##l-ca.truetime.com':13
- 'ni###.#j.glassey.com':13
- 'ti##.nist.gov':13
- 'ti###a.nist.gov':13
- 'ti####w.nist.gov':13
- 'localhost':1036
- 'ut#####.colorado.edu':13
- 'ti####.#imefreq.bldrdoc.gov':13
- 'ti###b.nist.gov':13
- DNS ASK ni###.#y.glassey.com
- DNS ASK ni###.#c.glassey.com
- DNS ASK ni###.datum.com
- DNS ASK ni###.##l-va.truetime.com
- DNS ASK ni###.##l-ca.truetime.com
- DNS ASK ni###.#j.glassey.com
- DNS ASK ti###b.nist.gov
- DNS ASK ti###a.nist.gov
- DNS ASK ti####w.nist.gov
- DNS ASK ti##.nist.gov
- DNS ASK ut#####.colorado.edu
- DNS ASK ti####.#imefreq.bldrdoc.gov
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_WebcheckMonitor' WindowName: ''
- ClassName: 'MS_AutodialMonitor' WindowName: ''