Technical Information
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'usrUserhid' = 'rundll32.exe "<LS_APPDATA>\SystemMousevga\usrUserhid.dll",Smartmap32 appAuthenticationPlay'
- <SYSTEM32>\rundll32.exe "<LS_APPDATA>\SystemMousevga\usrUserhid.dll",Smartmap32 appAuthenticationPlay
- <SYSTEM32>\rundll32.exe ""%TEMP%\confHelpClock.dll"", Smartmap32 unicfgTime
- %TEMP%\connectify-2.2.0.18699.log
- %TEMP%\confHelpClock.dll
- <LS_APPDATA>\SystemMousevga\usrUserhid.dll
- %TEMP%\nsq5.tmp\System.dll
- %TEMP%\connectify-2.2.0.18699.exe
- %TEMP%\nse2.tmp\NSISdl.dll
- %TEMP%\nsv4.tmp
- %TEMP%\nse2.tmp\NSISdl.dll
- %TEMP%\confHelpClock.dll
- 'so##data.us':80
- so##data.us/version.php?ve################################
- DNS ASK so##data.us
- ClassName: 'Indicator' WindowName: ''
- ClassName: 'QuickPathPlay' WindowName: ''
- ClassName: 'Shell_TrayWnd' WindowName: ''