Technical Information
- <SYSTEM32>\dsound.dll with <SYSTEM32>\dsound.dll.dat
- <SYSTEM32>\dllcache\dsound.dll with <SYSTEM32>\dllcache\dsound.dll
- '%TEMP%\Temp\heiyu.exe'
- '%TEMP%\Temp\jskµДРЎВн.exe'
- '%TEMP%\Temp\4-20.exe'
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\tempVidio.bat" "
- <SYSTEM32>\svchost.exe
- %TEMP%\kb376684.sve
- %CommonProgramFiles%\System\kb376684.dla
- %TEMP%\kb435671.sve
- %CommonProgramFiles%\System\kb435671.dla
- %TEMP%\kb623943.sve
- %TEMP%\kb561138.sve
- %TEMP%\kb228381.sve
- %TEMP%\kb984850.sve
- %TEMP%\kb925662.sve
- %TEMP%\kb898128.sve
- %TEMP%\kb747138.sve
- %TEMP%\kb304504.sve
- %TEMP%\kb726326.sve
- %CommonProgramFiles%\System\kb726326.dla
- %TEMP%\kb355394.sve
- %TEMP%\kb806593.sve
- %TEMP%\kb847315.sve
- %TEMP%\kb298317.sve
- %TEMP%\kb953683.sve
- %CommonProgramFiles%\System\kb435125.dla
- %TEMP%\kb486837.sve
- %TEMP%\kb108766.sve
- %TEMP%\kb435125.sve
- %TEMP%\kb043381.sve
- C:\System Volume Information\_restore{E7F0F64C-F7E5-4319-8757-E9A20C1C4E14}\fifo.log
- %TEMP%\kb211672.sve
- %CommonProgramFiles%\System\kb043381.dla
- %TEMP%\kb378660.sve
- %TEMP%\kb267843.sve
- %CommonProgramFiles%\System\kb885857.dla
- %TEMP%\kb420223.sve
- %CommonProgramFiles%\System\kb228381.dla
- %TEMP%\kb885857.sve
- %TEMP%\kb473033.sve
- %TEMP%\kb306658.sve
- %TEMP%\kb653127.sve
- %TEMP%\kb314035.sve
- %TEMP%\kb355848.sve
- %CommonProgramFiles%\System\kb445419.dla
- %TEMP%\kb566945.sve
- %CommonProgramFiles%\System\kb566945.dla
- %TEMP%\tempVidio.bat
- %CommonProgramFiles%\System\kb599505.dla
- %TEMP%\kb430507.sve
- %TEMP%\kb483318.sve
- %CommonProgramFiles%\System\kb483318.dla
- %CommonProgramFiles%\System\kb430507.dla
- %TEMP%\kb407957.sve
- %TEMP%\kb599505.sve
- %TEMP%\Temp\heiyu.exe
- %TEMP%\kb515145.sve
- %TEMP%\Temp\4-20.exe
- %TEMP%\Temp\jskµДРЎВн.exe
- %CommonProgramFiles%\System\kb515145.dla
- <SYSTEM32>\dllcache\dsound.dll
- %TEMP%\kb205048.sve
- %CommonProgramFiles%\System\kb205048.dla
- %TEMP%\kb644212.sve
- %CommonProgramFiles%\System\kb644212.dla
- %CommonProgramFiles%\System\kb032316.dla
- %TEMP%\kb909968.sve
- %TEMP%\kb510874.sve
- %TEMP%\kb808954.sve
- %TEMP%\kb445419.sve
- %TEMP%\kb991571.sve
- %TEMP%\kb241400.sve
- %TEMP%\kb032316.sve
- %TEMP%\kb048883.sve
- %TEMP%\kb391780.sve
- %TEMP%\kb458770.sve
- %CommonProgramFiles%\System\kb458770.dla
- %CommonProgramFiles%\System\kb391780.dla
- %TEMP%\kb342503.sve
- %CommonProgramFiles%\System\kb342503.dla
- %TEMP%\kb365142.sve
- %CommonProgramFiles%\System\kb365142.dla
- %CommonProgramFiles%\System\kb726326.dla
- %CommonProgramFiles%\System\kb435671.dla
- %CommonProgramFiles%\System\kb445419.dla
- %CommonProgramFiles%\System\kb032316.dla
- %CommonProgramFiles%\System\kb644212.dla
- %CommonProgramFiles%\System\kb435125.dla
- %CommonProgramFiles%\System\kb043381.dla
- %CommonProgramFiles%\System\kb885857.dla
- %CommonProgramFiles%\System\kb376684.dla
- %CommonProgramFiles%\System\kb228381.dla
- %CommonProgramFiles%\System\kb566945.dla
- %CommonProgramFiles%\System\kb430507.dla
- %CommonProgramFiles%\System\kb599505.dla
- %CommonProgramFiles%\System\kb515145.dla
- %CommonProgramFiles%\System\kb205048.dla
- %CommonProgramFiles%\System\kb365142.dla
- %CommonProgramFiles%\System\kb342503.dla
- %CommonProgramFiles%\System\kb391780.dla
- %CommonProgramFiles%\System\kb483318.dla
- %CommonProgramFiles%\System\kb458770.dla
- %TEMP%\Temp\heiyu.exe
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.YANB
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.YANB
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.MMVM
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.MMVM
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.DLIQ
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.DLIQ
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.WCID
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.ZACP
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.CDTO
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.WCID
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.ZACP
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.XGXM
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.VDKI
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.VDKI
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.MCIF
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.MCIF
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.REEB
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.XJXF
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.XGXM
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.REEB
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.XJXF
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.FCNA
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.VFWC
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.ZWCW
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.FCNA
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.VFWC
- from <SYSTEM32>\dsound.dll.dat to <SYSTEM32>\dsound.dll
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.FVJT
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.LIGE
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.LIGE
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.ZWCW
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.SGCQ
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.MLGF
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.CDTO
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.SGCQ
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.MLGF
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.FRYG
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.FRYG
- from <SYSTEM32>\dllcache\dsound.dll to <SYSTEM32>\dllcache\dsound.dll.ZMNC
- from <SYSTEM32>\dsound.dll to <SYSTEM32>\dsound.dll.ZMNC
- ClassName: 'Shell_TrayWnd' WindowName: ''