Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Server' = '%TEMP%\Intel.exe'
- '%TEMP%\RarSFX0\setup.exe'
- '%TEMP%\FppPro330.exe'
- '%TEMP%\Intel.exe'
- %TEMP%\RarSFX0\fppr332.dll
- %TEMP%\RarSFX0\fppui3a.dll
- %TEMP%\RarSFX0\FPPR316.DLL
- %TEMP%\RarSFX0\fppmon3.dll
- %TEMP%\RarSFX0\fppmon3a.dll
- %TEMP%\RarSFX0\fppuser3.dll
- %TEMP%\RarSFX0\fpp3.chm
- %TEMP%\RarSFX0\fpp3.sta
- %TEMP%\RarSFX0\fppdr3.drv
- %TEMP%\RarSFX0\framedyn.dll
- %TEMP%\RarSFX0\PSAPI.DLL
- %TEMP%\RarSFX0\LICENSE.RTF
- %TEMP%\RarSFX0\fppdis3a.exe
- %TEMP%\RarSFX0\Readme.txt
- %TEMP%\Intel.exe
- %TEMP%\FppPro330.exe
- %TEMP%\RarSFX0\setup.exe
- %TEMP%\RarSFX0\fppint3-2K.dll
- %TEMP%\RarSFX0\fppint3-NT.dll
- %TEMP%\RarSFX0\fppgraf3-NT.dll
- %TEMP%\RarSFX0\fppdes3a.dll
- %TEMP%\RarSFX0\fppgraf3-2K.dll
- 'ki###.no-ip.biz':333
- DNS ASK ki###.no-ip.biz
- ClassName: '#32770' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'EDIT' WindowName: ''