Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'Windows Update' = '<LS_APPDATA>\WinUpdate\WinUpdate.exe'
- '<LS_APPDATA>\WinUpdate\Registratore Mouse.exe.EXE'
- '<LS_APPDATA>\WinUpdate\WinUpdate.exe'
- ClassName: 'pediy06' WindowName: ''
- ClassName: 'GBDYLLO' WindowName: ''
- ClassName: 'OLLYDBG' WindowName: ''
- <LS_APPDATA>\WinUpdate\Registratore Mouse.exe.EXE
- %TEMP%\~DF63FF.tmp
- <LS_APPDATA>\WinUpdate\Registratore Mouse.exe_tmp.EXE
- <LS_APPDATA>\WinUpdate\WinUpdate.tmp
- <LS_APPDATA>\WinUpdate\WinUpdate.exe
- <LS_APPDATA>\WinUpdate\WinUpdate.exe
- <LS_APPDATA>\WinUpdate\Registratore Mouse.exe_tmp.EXE
- <LS_APPDATA>\WinUpdate\WinUpdate.tmp
- 'fo######egrino.zapto.org':38670
- DNS ASK fo######egrino.zapto.org
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'MS_WINHELP' WindowName: ''